Trust Center
At Zimmic, security, privacy, and responsible data handling are fundamental to how we design, deliver, and support technology services for our customers.
This Trust Center provides information about our security practices, privacy commitments, legal terms, compliance approach, and responsible use of technology.
Trust areas
Security
Our ISO/IEC 27001‑certified security program: access management, encryption, secure development, and incident response.
Security Overview →Privacy
How Zimmic collects, uses, and protects personal data, and the rights available to individuals under applicable law.
Privacy Notice →Terms and Conditions
The terms that govern the use of the Zimmic website, including permitted use and intellectual property.
Website Terms →Responsible Disclosure
How security researchers can report vulnerabilities in good faith, and how we handle coordinated disclosure.
Disclosure Policy →Subprocessors
What subprocessors are, when Zimmic may engage them, and the providers we currently use in service delivery.
About Subprocessors →Artificial Intelligence
How we use AI tools responsibly: human oversight, confidentiality, output validation, and disclosure.
AI Usage Policy →Compliance and Certifications
Zimmic's information security management program and the ISO/IEC 27001 certification held across the group.
Compliance →Contact
Privacy inquiries: privacy@zimmic.com
Security inquiries: security@zimmic.com
Legal inquiries: legal@zimmic.com
For general questions about working with Zimmic, please contact us.

We are ISO 27001 certified
Zimmic maintains an information security management program designed to support secure service delivery and enterprise customer requirements. The International Organization for Standardization 27001 Standard (ISO/IEC 27001) is an information security standard widely recognized and internationally accepted. The ISO/IEC 27001 specifies security management best practices and comprehensive security controls. Using them enables us to better manage the security of assets such as financial information, intellectual property, employee details or information entrusted to us by your company or third parties.
Certification details and supporting evidence may be provided upon request and, where appropriate, under a non-disclosure agreement.



