Enterprise Trust Centre

Security, privacy and evidence-led governance.

CoverageIQ is designed for telecommunications operators, MVNOs and enterprise teams where data integrity, operational confidence and transparent measurement matter. This Trust Centre explains how we approach security, privacy, responsible data handling and trust in measurement.

Our trust principles

CoverageIQ is built around enterprise expectations for privacy, ownership, measurement integrity and responsible governance.

Privacy and control

We minimise personal data exposure and ask customers to anonymise operational datasets before sharing them wherever practical. Customer data remains under customer ownership and control.

  • Customer data ownership retained
  • Anonymised inputs requested by default
  • Deletion requests supported
  • Retention periods agreed by contract
  • DPA available for enterprise customers

Trust in measurement

For CoverageIQ, trust is not only about cybersecurity. It is also about whether the evidence itself is explainable, repeatable and suitable for operational and executive decision-making.

  • Independent field measurement
  • Repeatable test methodology
  • Documented sampling approach
  • Traceable evidence cards
  • Governance-ready reporting

Security

CoverageIQ is hosted on Zoho Creator and supported by CoverageIQ operational controls for access, governance and service management.

Platform security

CoverageIQ is delivered using Zoho Creator, an enterprise application platform providing managed cloud infrastructure and platform security capabilities.

Access control

Access is restricted to authorised users with a legitimate business requirement, using role-based permissions and controlled administrator access.

Secure operations

CoverageIQ applies secure operating practices, including application maintenance, availability monitoring and controlled support processes.

Privacy & GDPR

CoverageIQ is designed to reduce exposure to personal information and support customers operating under UK GDPR and EU GDPR obligations.

Typical data used

CoverageIQ does not require personally identifiable customer information for its core operating model.

  • Complaint volumes and categories
  • Geographic or postcode-level data
  • Network performance KPIs
  • Drive test and walk test results
  • Operational metadata

Privacy commitments

Customer datasets are handled for agreed operational purposes and customers remain in control of submitted data.

  • Data minimisation
  • Purpose limitation
  • Confidential handling
  • Contractual retention periods
  • Enterprise DPA support

Customer data

Customers retain ownership of their operational datasets and may request deletion in accordance with contractual agreements and applicable legal obligations.

Ownership

Customer data remains the property of the customer. CoverageIQ does not claim ownership of uploaded operational datasets.

Retention

Retention periods are agreed with customers based on operational requirements, reporting needs and contractual obligations.

Deletion

Customers may request deletion of their data, subject to applicable legal, contractual or compliance obligations.

Trust in measurement

CoverageIQ findings are designed to be explainable, repeatable and appropriate for operational governance conversations.

Evidence approach

CoverageIQ supports a shared evidence base for operators, MVNOs and enterprise teams.

  • Independent measurement
  • Documented test scope
  • Sample-based reporting
  • Evidence cards by location or theme
  • Executive decision support

Responsible interpretation

Findings are positioned to support collaborative improvement rather than blame.

  • Clear distinction between evidence and interpretation
  • Transparent assumptions and constraints
  • Human review before customer reporting
  • Governance-ready outputs
  • Commercially sensitive handling of findings

Responsible AI

Where AI-assisted analysis is used, it supports human decision-making. People remain accountable for customer-facing recommendations.

Human oversight

AI-assisted outputs are reviewed by people before being included in customer-facing findings or recommendations.

Evidence-first analysis

AI may support organisation, summarisation or interpretation of evidence, but does not replace the underlying measurement process.

No automated customer decisions

CoverageIQ does not use AI to make automated decisions about individual end customers.

Governance roadmap

CoverageIQ does not currently hold formal certifications. The roadmap is focused on strengthening information security and AI governance over the next 12–18 months.

Area Status Notes
Formal certifications None yet CoverageIQ is not currently certified to ISO 27001, ISO/IEC 42001 or Cyber Essentials.
Information Security Management System In development Controls and governance processes are being developed to support enterprise customer requirements.
ISO 27001 Planned Certification objective within the next 12–18 months.
ISO/IEC 42001 Planned AI management system certification objective within the next 12–18 months.
GDPR alignment Operational Services are designed around data minimisation, anonymised inputs and customer control.
Data Processing Agreements Available DPA arrangements can be agreed with enterprise customers where appropriate.

Frequently asked questions

Common answers for procurement, legal, privacy and operational teams reviewing CoverageIQ.

Who owns customer data uploaded to CoverageIQ?
Customers retain ownership of uploaded operational data and evidence outputs. CoverageIQ does not claim ownership of customer datasets.
Do you require personally identifiable customer information?
No. CoverageIQ is designed to operate without personally identifiable customer information wherever possible. Customers are requested to anonymise datasets before submission.
Where is CoverageIQ hosted?
CoverageIQ is hosted using Zoho Creator, an enterprise application platform. CoverageIQ applies additional operational governance and access controls around the service.
Will you sign a Data Processing Agreement?
Yes. Data Processing Agreements can be agreed with enterprise customers where appropriate.
Can customers request deletion of their data?
Yes. Customers may request deletion of their operational data, subject to applicable legal, contractual or compliance obligations.
Does CoverageIQ currently hold ISO 27001 certification?
No. CoverageIQ does not currently hold ISO 27001 certification. Information security management capabilities are being developed with the objective of pursuing ISO 27001 certification within the next 12–18 months.
Does CoverageIQ use AI to make automated decisions about individual customers?
No. AI-assisted capabilities are used to support analysis and interpretation. CoverageIQ does not use AI to make automated decisions about individual end customers.
Procurement or security enquiry: Contact CoverageIQ for DPA, privacy, governance or security questionnaire support.
Contact us →