Trust Center

Share your compliance documentation with the right people

Written By Micah

What is the Trust Center?

The Trust Center gives your organization a branded, public-facing page where prospective customers, partners, and auditors can browse your available compliance documentation and request access to the assets that matter most to them.

Rather than managing ad hoc document requests over email or sharing sensitive files without any real visibility into the recipients, Trust Center lets you control access with tools to define which assets are visible and who can download them.

Your Trust Center page is hosted at a unique URL you configure, such as: https://grc.strikegraph.com/trust/unique-id/your-company

Once an external visitor requests access to an asset, your team reviews and approves (or denies) the request from directly within Strike Graph. Approved requestors receive a secure, time-limited link to download the document — no Strike Graph account required on their end.

Setting Up Your Trust Center

Trust Center settings are managed by users with Manager permissions. To get started, navigate to Trust Center in the main Strike Graph menu.

The Trust Center page has two tabs: Access Requests and Settings. Begin with the Settings tab to configure your public page before activating it.

Basic Information

In the Basic Information card, enter the following:

  • Company Name — The name that will be displayed at the top of your public Trust Center page. This defaults to your organization name.

  • Description — An optional rich-text description that introduces your security and compliance program to visitors.

Public URL

In the Public URL card, enter a URL-friendly version of your company name in the Company Name in URL field. This slug can only contain lowercase letters, numbers, hyphens, and underscores (e.g., acme-corp).

Once saved, your full Trust Center URL will be displayed in this section. You can copy it directly from here to share with prospects or embed it in your website. The cosmetic slug portion of the URL can be updated at any time without breaking existing shared links.

Company Logo

Upload your company logo to appear at the top of your public Trust Center page. Supported formats are PNG, JPG, and SVG, with a maximum file size of 2MB. A square image works best.

Access Request Notifications

In the Access Request Notifications card, select the Manager-level users in your organization who should receive email notifications whenever a new access request comes in. If no one is selected, access requests will still appear in the Access Requests tab but no email notifications will be sent.

Note: There is a 15 minute delay before the selected users are notified of the request. This allows us to batch notifications during that time period.

Activating Your Trust Center

Once your settings are configured, use the toggle in the Activation card to make your Trust Center publicly accessible. When the Trust Center is inactive, your URL will not be visible to external visitors. You can deactivate it at any time.

Previewing Your Trust Center

To preview your Trust Center, open a new incognito browser window and navigate to the public URL. Note: If you are redirected to a white screen with just the Strike Graph main navigation, this likely means that the application detects that you're still logged.

Publishing Assets to Your Trust Center

For an asset to appear on your public Trust Center page, it must be marked as public from the Trust Asset Library.

Navigate to the Trust Asset Library and find the asset you'd like to feature. Click the kabob menu [ ⋮ ] on the asset card and select Edit Trust Asset. From there, you can toggle the asset's visibility to make it public.

Once published, the asset will appear on your Trust Center page with its name and description visible to any visitor — but the file itself remains protected behind the access request workflow.

The External User Experience

When an external visitor arrives at your Trust Center URL, they'll see your company branding, your description, and a grid of your publicly available assets.

To request access to a specific asset, the visitor clicks the Request Access button on that asset. A form will appear prompting them to provide:

  • Email address (required)

  • Name

  • Company

  • Message (optional)

After submitting, they'll receive confirmation that their request has been sent. From that point, your team manages the approval from within Strike Graph.

Managing Access Requests

All incoming access requests are visible in the Access Requests tab of the Trust Center page in Strike Graph. This tab shows the count of pending requests next to its label so you're always aware of what's waiting.

Each request card displays the requester's name, company, email, the asset they're requesting access to, their message, and the current status of the request.

Approving a Request

Click Approve on a request to grant access. Strike Graph will generate a unique, secure access link for that requester. The requestor will automatically receive an email with the temporary link. You can also copy the link directly from the access request if you'd like to send it via email or some other communication mode. =

Access links are valid for 24 hours from the time of approval. After that, the link will expire automatically.

Denying a Request

Click Deny to decline a request. The request will be updated to a denied status. The requestor will receive an email letting them know that their request has been denied.

Note: Once an access request is denied, external parties can submit a new request — but there can only be one pending approved request per user per asset at once time.

Revoking Access

If you need to revoke access for a previously approved request — for instance, if an approved link was shared with the wrong person — you can click Revoke Access on the approved request card. The link will be invalidated immediately.

Generating an Access Link Directly

If you'd like to generate and share an access link for an asset without waiting for a request to come in, you can do so from the Trust Asset Library. Navigate to the relevant asset, click the kabob menu [ ⋮ ], and select Generate access link. This option is available for any asset that has been marked as public. This access link will be visible on the Access Requests tab, and can be further managed from there if necessary.