Trust center

Trust center builder

Configure branding, content, sections, and advanced settings, then preview and publish.

RolesViewerEditorAdminRoute/trust-centerShown toCompliance organizations

What it is

The builder is where you compose the public trust page: your logo and colours, the introduction, which frameworks and policies to show, the subprocessor list, and the domain it is served from. The left panel holds the configuration in four tabs; the right panel renders a live preview as you type. Nothing is public until you click Publish.

Where to find it

Trust CenterBuilder

The Trust Center group is available to organizations on the Compliance segment. Until a trust page has been published, the sidebar item carries a Preview badge.

The trust center builder with the Branding tab open and the live preview on the rightThe trust center builder with the Branding tab open and the live preview on the right
Configuration on the left, the page as visitors will see it on the right.

The header has four controls: an external-link icon button that opens the saved page in a new tab, a save icon button, Publish, and Unpublish. Both icon buttons need a saved page; the preview says "Please save the trust page first to preview it" otherwise.

Key actions

Editing and publishing need the editor or admin role.

Set the branding

On Branding, upload a Logo and, optionally, a Dark mode logo (optional).
Under Typography & contact, enter the Contact email visitors will reach and pick a Font family from the Popular, Serif, Monospace, or System groups.
Under Colors, set Primary, Secondary, Accent, and Hero background; the hero accepts a gradient.
Under Hero & appearance, choose a Hero style (Minimal (clean canvas) or Branded (color band)) and decide whether to Allow dark mode.

Write the content

On Content, fill Hero content: Introduction title, Tagline, First paragraph, Second paragraph. Custom buttons adds a Primary button and Secondary button, each with Button text and Link URL. Resources lists approved policies shown as downloadable resources; availability follows your enabled frameworks, so a policy you have not approved does not appear.

Choose the sections

On Sections, toggle the Page sections you want.
For the frameworks section, expand each framework's Verification & audit info and fill Certificate number, Verification status (Verified, Compliant, In Progress, Expired), and Certificate file. The file upload needs a saved page first ("Save the Trust Center before attaching a certificate").
Review Subprocessors. The list is built from your vendor records; edit a vendor to change what shows.
The Sections tab with page section toggles and per-framework verification and audit infoThe Sections tab with page section toggles and per-framework verification and audit info
A certificate file makes the Request certificate button appear on the public page.

Configure the domain

Advanced holds the Custom domain setup. It is required before publishing; the Custom domain guide covers DNS, ownership verification, and SSL.

The Advanced tab with the custom domain sectionThe Advanced tab with the custom domain section
Publishing is blocked until a domain is configured.

Save, preview, publish

Click the save icon. On an already published page the toast reads "Draft updated! Click Publish to push changes live."; the live page is unchanged until you publish.
Click the external-link icon to open /trust/[trust-id] in a new tab and check the result.
Click Publish. Noru saves first, then publishes; the toast confirms the publish and says the page will be live in about a minute.

Unpublish takes the page down ("Trust page unpublished") and the sidebar badge returns. Validation runs before saving: the organization name, the Primary, Secondary, and Accent colours, and the Font family are all required, and each has its own error toast.

Statuses and fields

StateMeaning
Preview badge in the sidebarNo trust page for this organization is published
Draft saved, not publishedMembers can open the preview; visitors get a 404
PublishedThe snapshot is live and the custom domain serves it
"Please configure a custom domain before publishing"Publish was clicked without a domain

Tips and gotchas

Save early. Certificate files and the preview both need a saved page, and a save costs nothing publicly.

Publish pushes everything in the draft, not just the tab you edited. Check the preview across all four tabs first.

What Noru does not do

Noru does not verify a certificate number or the Verification status you enter; they print as you typed them. It does not translate the page, host it without a custom domain, or keep an old version live after Unpublish. Changes to vendors and policies reach the page only on the next publish.

Last updated on