Access Controls

Control who can access your documents with three visibility levels.

Visibility levels

Every document in your Trust Center has one of three visibility levels:

Public

Anyone can view and download the document immediately. No login or information required. Best for general compliance certifications, privacy policies, and other non-sensitive materials.

Email-gated

Visitors must provide their business email address before downloading. This lets you track who's accessing your documents and follow up with interested prospects. Available on all plans.

When a visitor submits their email, they receive a secure download link. You can see all email-gated requests in Dashboard → Requests.

NDA-gated

Visitors must sign a Non-Disclosure Agreement before accessing the document. This is ideal for sensitive materials like penetration test reports, security architecture diagrams, and detailed vulnerability assessments.

NDA gating requires the Pro or Enterprise plan. Configure your NDA template in Dashboard → Settings → NDA.

Require Approval

In addition to visibility levels, you can enable Require Approval on any document. When enabled:

  1. Visitor requests access (via email or NDA)
  2. You receive a notification in Dashboard → Requests
  3. You approve or reject the request
  4. If approved, the visitor receives a secure, time-limited download link via email

Managing access requests

All access requests appear in Dashboard → Requests where you can:

  • See who requested access, when, and for which document
  • Approve or reject pending requests
  • View the visitor's email and company information
  • Track download status (whether the link was used)

NDA compliance log

For NDA-gated documents, Trusteo maintains a full audit trail of every signature including:

  • Signer name, email, company, and title
  • Timestamp of signature
  • IP address
  • The NDA text that was signed

Access the compliance log from Dashboard → Analytics → NDA Compliance (Pro plan).

Recommendation: Use Public for general certifications, Email-gated for detailed reports, and NDA-gated + Require Approval for your most sensitive documents like pentest results.