Zentara Logo

Trust Center

Start your security review
View & download sensitive information
Ask for information
ControlK

Overview

Welcome to Zentara's Trust Center. Here, we aim to provide a clear and accessible overview of our security and trust practices. Zentara (PT Mars Bumi Indonesia and/or our affiliates) offers various products and services through our website (https://zentara.co/ and its derivative sites). In providing these services, we may collect and process personal data from users of our site and applications.

This Trust Center serves as a foundational resource, outlining the boundaries and applicability of our privacy program and management systems. We are committed to protecting your data and maintaining your trust. Our practices include a formal review of our PCI DSS scope at least annually, and semi-annually for service providers, to ensure all data flows and system components are included in our compliance program. We also maintain visitor logs for our facilities, computer rooms, and data centers where sensitive data may be stored or transmitted, creating an audit trail of activity.

Zentara has implemented security mechanisms to ensure that only trusted keys and certificates are accepted during the transmission of sensitive data, confirming their validity and ensuring they are not expired or revoked. We also provide user guides and system documentation to share information about the design and operation of our systems and their boundaries. Our security awareness training materials include information on our security policy, phishing and social engineering awareness, and the role of personnel in protecting cardholder data. For service providers, we maintain a documented description of our cryptographic architecture, detailing algorithms, protocols, and keys used for protecting stored account data.

Our Privacy Policy details how we process your personal data, including how we obtain, collect, store, use, and protect it. We process data to improve your experience with our products, communicate with you, provide information about our services, and for various business operations such as accounting, auditing, and fraud prevention. We are transparent about how we use information and are committed to providing clear explanations. Upon customer request, we provide information on our PCI DSS compliance status and clarify shared responsibilities. We also regularly review information system activities.

Documents

COMPLIANCECerti-Trust ISO 27001

Risk Profile

We have secure, reliable hosting that customers can depend on. We are happy to provide details about our risk mitigation practices and recovery objectives upon request.

Self-Assessments

We are working on our security compliance. We can provide completed questionnaires upon request.

Legal

We take legal matters seriously and we always engage our legal counsel to review all commercial activities. Please contact us if you have any questions.

Security Grades

We are constantly monitoring the security of our website. We will post our grades from public security rating agencies when they become available.

Built onSafeBase by Drata Logo