Security, privacy and evidence-led governance.
CoverageIQ is designed for telecommunications operators, MVNOs and enterprise teams where data integrity, operational confidence and transparent measurement matter. This Trust Centre explains how we approach security, privacy, responsible data handling and trust in measurement.
Trust summary
A concise view for procurement, security, privacy and governance teams reviewing CoverageIQ.
Customer Data Ownership
Customers retain ownership of uploaded operational datasets and CoverageIQ evidence outputs.
Anonymised by Default
CoverageIQ is designed to operate without personally identifiable customer information.
Secure Platform
Hosted on Zoho Creator with additional CoverageIQ access, governance and operational controls.
Certification Roadmap
ISO 27001 and ISO/IEC 42001 are planned as part of the 12–18 month governance roadmap.
Our trust principles
CoverageIQ is built around enterprise expectations for privacy, ownership, measurement integrity and responsible governance.
Privacy and control
We minimise personal data exposure and ask customers to anonymise operational datasets before sharing them wherever practical. Customer data remains under customer ownership and control.
- Customer data ownership retained
- Anonymised inputs requested by default
- Deletion requests supported
- Retention periods agreed by contract
- DPA available for enterprise customers
Trust in measurement
For CoverageIQ, trust is not only about cybersecurity. It is also about whether the evidence itself is explainable, repeatable and suitable for operational and executive decision-making.
- Independent field measurement
- Repeatable test methodology
- Documented sampling approach
- Traceable evidence cards
- Governance-ready reporting
Security
CoverageIQ is hosted on Zoho Creator and supported by CoverageIQ operational controls for access, governance and service management.
Platform security
CoverageIQ is delivered using Zoho Creator, an enterprise application platform providing managed cloud infrastructure and platform security capabilities.
Access control
Access is restricted to authorised users with a legitimate business requirement, using role-based permissions and controlled administrator access.
Secure operations
CoverageIQ applies secure operating practices, including application maintenance, availability monitoring and controlled support processes.
Privacy & GDPR
CoverageIQ is designed to reduce exposure to personal information and support customers operating under UK GDPR and EU GDPR obligations.
Typical data used
CoverageIQ does not require personally identifiable customer information for its core operating model.
- Complaint volumes and categories
- Geographic or postcode-level data
- Network performance KPIs
- Drive test and walk test results
- Operational metadata
Privacy commitments
Customer datasets are handled for agreed operational purposes and customers remain in control of submitted data.
- Data minimisation
- Purpose limitation
- Confidential handling
- Contractual retention periods
- Enterprise DPA support
Customer data
Customers retain ownership of their operational datasets and may request deletion in accordance with contractual agreements and applicable legal obligations.
Ownership
Customer data remains the property of the customer. CoverageIQ does not claim ownership of uploaded operational datasets.
Retention
Retention periods are agreed with customers based on operational requirements, reporting needs and contractual obligations.
Deletion
Customers may request deletion of their data, subject to applicable legal, contractual or compliance obligations.
Trust in measurement
CoverageIQ findings are designed to be explainable, repeatable and appropriate for operational governance conversations.
Evidence approach
CoverageIQ supports a shared evidence base for operators, MVNOs and enterprise teams.
- Independent measurement
- Documented test scope
- Sample-based reporting
- Evidence cards by location or theme
- Executive decision support
Responsible interpretation
Findings are positioned to support collaborative improvement rather than blame.
- Clear distinction between evidence and interpretation
- Transparent assumptions and constraints
- Human review before customer reporting
- Governance-ready outputs
- Commercially sensitive handling of findings
Responsible AI
Where AI-assisted analysis is used, it supports human decision-making. People remain accountable for customer-facing recommendations.
Human oversight
AI-assisted outputs are reviewed by people before being included in customer-facing findings or recommendations.
Evidence-first analysis
AI may support organisation, summarisation or interpretation of evidence, but does not replace the underlying measurement process.
No automated customer decisions
CoverageIQ does not use AI to make automated decisions about individual end customers.
Governance roadmap
CoverageIQ does not currently hold formal certifications. The roadmap is focused on strengthening information security and AI governance over the next 12–18 months.
| Area | Status | Notes |
|---|---|---|
| Formal certifications | None yet | CoverageIQ is not currently certified to ISO 27001, ISO/IEC 42001 or Cyber Essentials. |
| Information Security Management System | In development | Controls and governance processes are being developed to support enterprise customer requirements. |
| ISO 27001 | Planned | Certification objective within the next 12–18 months. |
| ISO/IEC 42001 | Planned | AI management system certification objective within the next 12–18 months. |
| GDPR alignment | Operational | Services are designed around data minimisation, anonymised inputs and customer control. |
| Data Processing Agreements | Available | DPA arrangements can be agreed with enterprise customers where appropriate. |
Frequently asked questions
Common answers for procurement, legal, privacy and operational teams reviewing CoverageIQ.