peergos-making-yourself-aud.../HOWTO.md
George Lambert afa270a141
Some checks are pending
ci / markdown (push) Waiting to run
Initial pack: Peergos EU audit verification and DataCube audit-ready checklist
Cure53 Berlin 2019 and ROS Amsterdam 2024 are pentests, not HIPAA/SOC2/ISO
certificates. BAA/DPA guidance for ciphertext-at-rest on cryptree+IPFS.
2026-09-15 23:57:04 -04:00

992 B

How to use this pack

  1. Read PEERGOS-VERIFICATION.md so you do not over-claim Peergos audits.

  2. Fill CHECKLIST.md with your instance evidence (ns1, keys, users).

  3. Give BAA-DPA.md to counsel with the data-flow from README.md.

  4. Point auditors at live technical surfaces (do not give them private keys):

  5. Attach the two public Peergos pentest PDFs from https://github.com/Peergos/Peergos/tree/master/audits as vendor security evaluations, labeled “not our SOC 2 / ISO certificate”.

Related code/docs: