Trust Package Detail

Security overview

High-level architecture, authentication boundaries, and platform-control summary for organizations that need a serious first-pass review.

Who this helps

Security reviewers, technical approvers, and mission-driven partners validating baseline controls before rollout.

Why this matters

If your organization is trusting Blacklight with resume requests for patrons, members, students, or clients, your team should be able to see quickly how privileged access is limited and where higher-risk actions are controlled.

Current summary

Public intake, partner workflows, and admin operations are separated into different surfaces so the same person is not moving through every part of the system with the same level of access.

Sensitive actions such as billing changes, privacy handling, partner-access changes, and high-risk admin actions sit behind stronger authentication requirements and auditability.

The platform is designed to keep customer-facing intake simple while keeping privileged operational controls limited to authenticated internal or partner-authorized paths.

How to use it in review

Start with this summary to align your reviewer on scope before sending a longer questionnaire.

Use the partner portal for active trial, billing, and support-configuration actions if your organization already has partner access.

Use the trust contact flow when your institution needs a deeper procurement, privacy, or questionnaire follow-up than the public trust center provides.