30%
Security
Measures observable and declared security safeguards: public policies, abuse controls, incident reporting, data protection signals, and visible security commitments.
Signals assessed
Critical risk, almost no safeguards, or insufficient public evidence.
Weak controls, visible material gaps, and limited response capacity.
Intermediate level: credible signals exist but remain incomplete.
Solid base with observable controls, useful documentation, and credible follow-through.
Reference-grade level with coherent safeguards, repeated evidence, and legible governance.
