Trust Center - Blockdaemon

Blockdaemon

Blockdaemon empowers businesses to manage and deploy blockchain applications through the organization's node management platform. Our platform offers a multi-chain, multi-cloud network management tool that can deploy nodes and provide infrastructure that reduces the complexity of working with blockchains while offering faster deployment times and lower cost.

Industry-leading financial institutions, exchanges, custodians, cryptocurrency platforms and developers trust Blockdaemon as their onramp to over 70 blockchain protocols; making us the number one institutional staking provider by volume.

Blockdaemon was founded in 2017 and is headquartered in Los Angeles.

Resources

Compliance

#### ISO 27001:2022
Copy link for ISO 27001:2022
ISO 27001:2022 Certificate
Request access ISO 27001:2022
#### SOC 2 Type I Report
Copy link for SOC 2 Type I Report
A report on management’s description of Blockdaemon’s system and the suitability of the design and operating effectiveness of the controls to provide reasonable assurance that Blockdaemon’s principal service commitments and system requirements were achieved based on the Security trust services criteria
Request access SOC 2 Type I Report
#### SOC 2 Type II Report [January 1 - April 30, 2025]
Copy link for SOC 2 Type II Report [January 1 - April 30, 2025]
A report on management’s description of Blockdaemon’s system and the suitability of the design and operating effectiveness of the controls to provide reasonable assurance that Blockdaemon’s principal service commitments and system requirements were achieved based on the Security trust services criteria
Request access SOC 2 Type II Report [January 1 - April 30, 2025]
#### SOC 2 Type II Report [May 1 - Oct 31, 2025]
Copy link for SOC 2 Type II Report [May 1 - Oct 31, 2025]
A report on management’s description of Blockdaemon’s system and the suitability of the design and operating effectiveness of the controls to provide reasonable assurance that Blockdaemon’s principal service commitments and system requirements were achieved based on the Security trust services criteria
Request access SOC 2 Type II Report [May 1 - Oct 31, 2025]
#### SOC 1 Type I Report
Copy link for SOC 1 Type I Report
Blockdaemon 2026 - SOC 1 Type I
Request access SOC 1 Type I Report

Penetration Tests

#### Blockdaemon Annual Penetration Test - WebApp & API Executive Summary
Copy link for Blockdaemon Annual Penetration Test - WebApp & API Executive Summary
Request access Blockdaemon Annual Penetration Test - WebApp & API Executive Summary
#### MPC Wallets and Vaults - Zellic Audit Report.pdf
Copy link for MPC Wallets and Vaults - Zellic Audit Report.pdf
Graybox Application Security Assessment
Request access MPC Wallets and Vaults - Zellic Audit Report.pdf
#### Exec Summary- MPC Wallets and Vaults - Zellic Audit Report.pdf
Copy link for Exec Summary- MPC Wallets and Vaults - Zellic Audit Report.pdf
Request access Exec Summary- MPC Wallets and Vaults - Zellic Audit Report.pdf

Govern

#### Risk Management Policy
Copy link for Risk Management Policy
Request access Risk Management Policy
#### Third-Party Risk Management Policy
Copy link for Third-Party Risk Management Policy
Request access Third-Party Risk Management Policy
#### Acceptable Use Policy
Copy link for Acceptable Use Policy
Request access Acceptable Use Policy
#### Blockdaemon Risk Management Framework.pdf
Copy link for Blockdaemon Risk Management Framework.pdf
Enterprise Risk Management Framework
Request access Blockdaemon Risk Management Framework.pdf
#### Acceptable Use of AI in Software Development.pdf
Copy link for Acceptable Use of AI in Software Development.pdf
Acceptable Use of AI in Software Development
View Acceptable Use of AI in Software Development.pdf
#### Information Security Policy
Copy link for Information Security Policy
Request access Information Security Policy
#### Password Policy
Copy link for Password Policy
Request access Password Policy

Identify

#### Asset Management Policy
Copy link for Asset Management Policy
Request access Asset Management Policy

Protect

#### Human Resources Security Policy
Copy link for Human Resources Security Policy
Request access Human Resources Security Policy
#### Operations Security Policy
Copy link for Operations Security Policy
Request access Operations Security Policy
#### Information Classification and Management Policy
Copy link for Information Classification and Management Policy
Request access Information Classification and Management Policy
#### Access Management Policy
Copy link for Access Management Policy
Request access Access Management Policy
#### Remote Work Policy
Copy link for Remote Work Policy
Request access Remote Work Policy
#### BYOD Policy
Copy link for BYOD Policy
Request access BYOD Policy
#### Cloud Computing Policy
Copy link for Cloud Computing Policy
Request access Cloud Computing Policy
#### Secure Development Policy
Copy link for Secure Development Policy
Request access Secure Development Policy
#### Cryptography Policy
Copy link for Cryptography Policy
Request access Cryptography Policy

Detect

#### Vulnerability Management Policy
Copy link for Vulnerability Management Policy
Request access Vulnerability Management Policy

Respond

#### Security Incident Response Plan
Copy link for Security Incident Response Plan
Request access Security Incident Response Plan

Recover

#### Business Continuity & Disaster Recovery Plan
Copy link for Business Continuity & Disaster Recovery Plan
Request access Business Continuity & Disaster Recovery Plan
#### Business Continuity and Disaster Recovery Policy
Copy link for Business Continuity and Disaster Recovery Policy
Request access Business Continuity and Disaster Recovery Policy

Other resources

#### Blockdaemon Statement of Applicability (ISMS 11).pdf
Copy link for Blockdaemon Statement of Applicability (ISMS 11).pdf
Request access Blockdaemon Statement of Applicability (ISMS 11).pdf
#### SOC 2 Type II Bridge Letter
Copy link for SOC 2 Type II Bridge Letter
Request access SOC 2 Type II Bridge Letter

Bulk download will only work on resources that are accessible and not view only.