Trust Center
Review the materials AMT can provide for security, cross-border data, data trustworthiness and authoritative certifications. This page lists only certifications, filings and notes currently available for customer review, with copies or official verification available on request.
Four categories of trust capabilities
Review the materials AMT can provide for security, cross-border data, data trustworthiness and authoritative certifications.
Security
- Access control, encryption, audit logs and incident response
- Annual third-party penetration testing + remediation SLA
Useful for: Security reviews / tenders
Cross-Border Data
- CAC standard-contract cross-border filing
- Shanghai FTZ cross-border negative-list pilot
Useful for: Compliant outbound data transfers from China
Data Trustworthiness
- Source traceability, quality checks, monitoring and tenant isolation
- Key-node hash proofs for third-party verification
Useful for: EUDR / DPP / Battery / CBAM verification
Authoritative Certifications
- ISO/IEC 27001:2022 Information Security Management System certification
- Certificate copies, filing numbers and supporting materials available on request
Useful for: Procurement onboarding / customer reviews / tender materials
This page lists only certifications, filings and notes currently available for customer review. Certificate copies, filing numbers and security questionnaires are available through the contact page.
Trust Center topics
Explore security, privacy, data trustworthiness, cross-border data, continuity and related materials by topic.
Information Security
ISO 27001 ISMS + 14 controls + pen testing + vuln SLA.
OpenData Privacy
China laws + GDPR + DPA + 7 data-subject rights.
OpenData Integrity
Source traceability + quality checks + hash proofs.
OpenCertificates & Filings
How to request certificate copies, filing numbers and supporting materials.
OpenCross-Border Data
CAC filing + SCC + Shanghai FTZ negative list.
OpenSub-processors
Sub-processor categories + due diligence + DP terms.
OpenIncident Response
DR + RTO/RPO + 24×7 incident response.
OpenTrust Whitepaper
Download the full bilingual Trust whitepaper.
OpenHow to verify materials
Certificate, filing and pilot materials can be provided as copies or numbers on request, with official-channel verification where available.
Request the ISO 27001 certificate copy
Get the certificate copy and SoA summary via the contact page or sales.
Verify the CAC cross-border filing
Use the filing number to verify the standard-contract filing via the official CAC channel.
Verify the Shanghai FTZ pilot
Verify negative-list pilot onboarding via the Shanghai FTZ public channel.
Common trust questions
How can data integrity be verified?
AMT can keep hash-proof records at key data points. Customers or verifiers can compare the hash within the authorised scope to confirm whether the data has stayed consistent since proofing.
Where is customer data stored?
Customer data is hosted by default in AMT’s Shanghai data centre (within China). For overseas scenarios, transfers follow the CAC standard contract or the FTZ negative list.
Can you complete our security questionnaire?
Yes. We support common templates such as SIG / CAIQ and can share redacted documentation and certificate copies under NDA.
How are security incidents communicated?
We use P0/P1/P2 tiered response and notify affected customers within 24 hours of a confirmed incident, with ongoing updates.
How do I get the full trust documentation?
Download the bilingual AMT Trust Whitepaper from the Trust Whitepaper page — it covers security / privacy / integrity / certifications / cross-border / continuity.

