Trust center

Creating "inherently safe" products to provide customers with trustworthy system observability services

Security

Guance always prioritizes product quality and security, strictly complies with national software security standards and requirements, actively adopts various security protection measures, and effectively reduces security threats caused by DDoS, hacker attacks, malware, and unauthorized operations. From the moment you visit our products, we are committed to protecting your safety.

Learn more
Guance product safety
Guance privacy protection

Privacy

Guance respects and protects the personal privacy rights of all users, committing to handling this information with the utmost caution and at least the same diligence and prudence as in protecting its own confidential information.

Learn more

Compliance

Guance meet various industry compliance certifications such as Information System Security Level 3 (Level 3), ISO9001, ISO27001, and ISO20000, and continuously monitor existing and emerging security and privacy standards to safeguard our obligations under evolving security and privacy regulations.

Learn more
Guance compliance certification

Our safety measures

Product safety

Guance always prioritizes product quality and safety, actively responding to national and industry software security standards and requirements, and cooperating with government and key industry regulatory departments to conduct security self-inspections. By implementing automated vulnerability detection and various security control measures, Guance effectively reduces the number of product security vulnerabilities, ensures network and information security, and strives to provide users with a product that is "inherently safe."

Guance product safety
Guance data security

Data security

Guance places great emphasis on the security protection of data availability, integrity, and confidentiality throughout its entire lifecycle, and has carried out extensive practical applications in data collection, storage, use, processing, and transmission, providing users with practical and effective data protection capabilities. Guance strictly adhere to the principles of "legality, legitimacy, and necessity," and will not collect or disclose user data without user permission; During the transmission and storage phases of data, Guance use encryption technology to ensure highly encrypted data to prevent data leaks. Users may stop data collection and delete data at any time, Guance retain data in any form or for any purpose without user authorization.

Safe operation

Guance and team members strictly comply with product security governance rules and related policies and protocols, and do not access customer data without user authorization. At the same time, based on a series of role management and permission management control processes, system resources Guanceare managed with minimal privilege requirements, all members' operational actions are logged to ensure traceability and auditability of operational events, and product and usage security are protected with utmost sincerity.

Guance safe operation

Our privacy and control

Privacy data management

Guance respects and protects all users' personal privacy rights, and is committed to treating this information with the utmost caution, at least as diligent and prudent as in protecting its own confidential information. Guance will not disclose or provide this information to third parties without permission. In the event of a confidential information leak, Guance will respond promptly, actively cooperate with users, and take all reasonable measures to prevent or mitigate any damage.

Protection of minors' privacy

Guance places great importance on protecting minors' information. Since Guance products/services are intended for businesses or adults, if you are under 18 years old (inclusive), or a natural person without full civil capacity and full civil capacity, you will not be authorized to use Guance products/services nor provide us with any personal information.

Compliance Certification & Assurance

Advanced level of observability platform

Advanced level of observability platform

The Advanced Level of Guance Platform is an advanced certificate for "Observability Platform Technical Capability" jointly issued by the China Academy of Information and Communications Technology and the Cloud Computing Open Source Industry Alliance. Guance meets the advanced capability requirements of the Observability Platform in the full-process evaluation of four modules: data collection, data processing, data application, and platform operation and maintenance, earning the Advanced Level certification.

Trusted Cloud enterprise-level SaaS service certification

Trusted Cloud enterprise-level SaaS service certification

Trusted Cloud Assessment is a cloud computing service and software evaluation brand under the China Academy of Information and Communications Technology. It is a professional evaluation system for cloud computing services and software, with the core goal of establishing an evaluation system for cloud service providers, supporting users in choosing secure and trustworthy cloud providers. Guance has obtained Trusted Cloud certification requirements in enterprise, services, technology, operations, and maintenance, and has passed Trusted Cloud enterprise-level SaaS service certification.

National Level 3 Information Security Level 3 Certification

National Level 3 Information Security Level 3 Certification

Network Security Classified Protection Certification is China's authoritative qualification for information product security. It is recognized and evaluated by public security authorities in accordance with national information security protection regulations and related systems, following management norms and technical standards, to recognize and evaluate the security status of each institution's information system security classification. Guance has passed the Level 3 Classified Protection filing and fully implements security technology and management requirements in accordance with the "Basic Requirements for Security Classified Protection in Information Systems."

ISO9001 Quality Management System Certification Certificate

ISO9001 Quality Management System Certification Certificate

ISO 9001 is a standard for quality management systems. By establishing a comprehensive quality management system, strengthening corporate management levels, and continuously improving products, we provide customers with high-quality products and services that meet regulatory requirements.

ISO27001 Information Security Management System Certification

ISO27001 Information Security Management System Certification

ISO/IEC 27001 is an international standard for information security management system certification. By regularly assessing risks and implementing corresponding control measures, it effectively ensures the continuous operation of an organization's information security management system and achieves information security management.

ISO20000 Information Security Management System Certification

ISO20000 Information Security Management System Certification

ISO20000 is an international standard in the field of Information Technology Service Management (ITSM), continuously improving the availability, reliability, and security of IT services by establishing standardized IT management processes, providing customers with high-quality services.

CMMI V2.0 DEV ML3

CMMI V2.0 DEV ML3

CMMI (Capability Maturity Model Integration) stands for Capability Maturity Model Integration, aiming to help enterprises improve standardized processes such as project management and software development, enhance development and management capabilities, and improve development efficiency and software quality. Guance provides customers with high-quality software and services through standardized R&D and management processes.

SOC 2 Type II

SOC 2 Type II

The Service Organization Control Report (SOC Report) serves as an independent audit report, covering control points related to the security, availability, and confidentiality of the Guance platform. The SOC 2 Audit Report, also known as the System and Organization Controls 2 Report, is a third-party independent report issued by the American Institute of Certified Public Accountants (AICPA) to audit the internal controls of service providers. It is highly objective, continuous, and highly recognized, serving as a globally recognized data security audit standard and providing important security assurance and reference for users of SaaS services.

High-tech enterprise certificate

High-tech enterprise certificate

Software Enterprise Certification Certificate

Software Enterprise Certification Certificate

Start your journey of monitoring and observability now

Get started