# 1Token Trust Overview

Last updated: 2026-07-07
Canonical HTML page: https://1token.tech/trust-center

> The 1Token Trust Center summarizes public security posture, SOC 2 Type II certification, penetration testing, data protection, and secure workflow practices.

## Public Trust Facts

- 1Token states that it has achieved SOC 2 Type II certification.
- Trust Service Criteria listed publicly: Security, Availability, and Confidentiality.
- Security practices described publicly include regular third-party penetration testing, vulnerability scanning, API security testing, infrastructure security reviews, and continuous compliance monitoring.
- Data protection practices described publicly include TLS 1.3 for data in transit, AES-256 encryption at rest, client data isolation, secure API key management, and zero data redistribution policy.
- Workflow controls described publicly include read-only API integrations, MFA, RBAC, audit logs, secure onboarding, and activity monitoring.

## Boundaries

- This markdown summary does not add SOC 2 audit-period details beyond what is visible on the Trust Center page.
- Use the Trust Center as the canonical public source for security and compliance claims.

## Related Pages

- [Trust Center](https://1token.tech/trust-center)
