Version
v0.1 (Trust Disclosure)
Reliability, security, and transparency across the ecosystem
Trust Center defines HolyCode public reliability controls: HolyDC service SLAs, security baseline controls, audit posture, and recurring disclosures for investors and enterprise clients.
Version
v0.1 (Trust Disclosure)
Updated
March 5, 2026
Status
Operational Controls Active
Target service and incident-response baselines
| Tier | Availability | Response (P1) | Recovery Target | Scope |
|---|---|---|---|---|
| Shared Agent Cloud | 99.5% | <= 60 min | <= 8 hours | Pilot and baseline workloads |
| Dedicated Agent Pod | 99.9% | <= 30 min | <= 4 hours | Continuous B2B workloads |
| Private Agent Cluster | 99.95% | <= 15 min | <= 2 hours | Enterprise/B2G and compliance-critical workloads |
Minimum control baseline before public stage
| Domain | Control | Evidence |
|---|---|---|
| Identity & Access | Role-based access + MFA for privileged identities | IAM policy snapshots and access review logs |
| Infrastructure Security | Network segmentation, hardening baseline, and patch cadence | Configuration checklist + monthly compliance report |
| Key Management | Separation of operational keys and governance signing flows | Key rotation logs and custody policy |
| Smart Contracts | Independent audits and release gating controls | Audit reports + remediation notes |
Ownership and publishing rhythm
| Disclosure | Owner | Cadence |
|---|---|---|
| Treasury Report | DAO Treasury Ops | Monthly |
| Infrastructure Uptime Report | HolyDC Operations | Monthly |
| Security Incident Summary | Security Lead | Per incident + quarterly digest |
| Governance Decision Digest | DAO Council | Per governance cycle |
SLA and security-control values are operational targets. Actual values are reflected in recurring disclosures and may be adjusted through governance updates.