Skip to main content
Your organization profile controls how VISO TRUST presents your organization to vendors and stakeholders — including your name, branding, and the email addresses and URLs that appear in vendor-facing communications. Organization profile settings are in Settings → Org Profile. Editing the profile requires Admin access.

Basic Information

Set your organization’s display name and primary contact information. The organization name appears throughout the platform — in your vendor directory listing, assessment emails, and the collection portal vendors see when they submit documentation.

Branding

Custom branding is an early access feature. Contact support@visotrust.com to enable it for your organization.
VISO TRUST allows you to apply your organization’s visual identity to the vendor collection experience — so vendors see your branding, not VISO TRUST’s, when they submit documentation. Navigate to Settings → Org Profile → Branding to configure:

Logo and Icon

Accepted file types: .png and .jpg for both assets — the logo also accepts .gif, and the icon also accepts .ico. Changes save automatically and are confirmed with a toast message.

Brand Color

Set a brand color that appears in vendor collection requests and email communications. Use the color picker to enter a custom hex value, or select from the preset options. Use the preview pane to see how the color looks in both the collection portal and email views before saving.

Custom Email Domain

By default, vendor-facing emails are sent from a VISO TRUST address and collection portal links use a visotrust.com domain. Custom domain options let you replace these with your own branding. Three levels of customization are available: The email domain and the portal URL are independent settings. Verifying your domain with DKIM changes only the address vendor emails are sent from — it does not change your portal URL. If you also want branded links, choose a subdomain or a fully custom domain separately.
Subdomain and fully custom domain are mutually exclusive. Setting one removes the other.
Custom domains are vendor-facing branding, intended so vendors recognize the sender and the link. Your own team continues to use app.visotrust.com, which stays live whether or not you configure a custom domain.

Configuring DKIM

DKIM proves to receiving mail servers that VISO TRUST is authorized to send on behalf of your domain, so vendor emails from your address land in inboxes instead of spam. You need program admin access, and DNS access for the domain you want to send from.
1

Open Manage domains

Go to Settings → Org Profile → Manage domains.The table lists every domain registered to your organization, with DKIM Verified and RP Domain Verified columns. These domains are populated automatically from your organization’s verified domains — you don’t add them here.
2

Open the domain's verification configuration

Select the domain name, or the gear icon on its row, to open the Domain Verification Configuration dialog.The dialog shows four values, each with a Copy to clipboard button:
  • DKIM Pending Host
  • DKIM Pending Text Value
  • Return Path Domain
  • Return Path CNAME Value
Once a domain is verified, the two DKIM fields read DKIM Verified instead of showing pending values.
3

Add the DNS records

In your DNS provider, add the following records for that domain:The DKIM record is required. The return-path record is optional but recommended — it aligns bounce handling with your domain and improves deliverability. A custom sending address works with DKIM alone.
4

Re-check verification

Back on Manage domains, select the refresh icon. VISO TRUST re-checks every listed domain against the email provider and updates the DKIM Verified column.DNS propagation can take 24–48 hours, so the column may stay No for a while after you add the records. Refresh again periodically rather than re-adding the records.
5

Set your sending address

Once at least one domain shows DKIM Verified: Yes, the Edit email button under Custom email becomes available. Select it and set:
  • Domain — chosen from your DKIM-verified domains
  • Sender name — the display name vendors see
  • Mailbox — the local part of the address (e.g. tprm)
The dialog previews the result as "Sender Name" <mailbox@yourdomain.com>. Select Save configuration to apply it.
To go back to the VISO TRUST default sending address, use Reset to default next to Edit email. This clears the custom sending address only; the domain stays DKIM-verified, so you can re-apply it later without redoing DNS.
Edit email and Edit domain are separate controls. Edit email sets the address vendor emails come from and requires DKIM verification. Edit domain sets the branded URL in those emails and does not.

Requests Already in Flight

Turning on DKIM or a custom URL does not break collection requests vendors already have:
  • Each collection link is identified by a unique token, not by the domain it was sent under.
  • The URL the vendor originally received stays live, so the link continues to resolve.
  • Only emails sent after the change use the new from address and the branded URL.
Changing or removing a custom domain later does break links already sent under it. VISO TRUST stops routing the retired domain, so a vendor selecting a link in an older email will not reach the collection portal. Switching between a subdomain and a fully custom domain has the same effect, because setting one retires the other. Reissue any open requests before retiring a custom domain.

Language Support

VISO TRUST’s Artifact Intelligence processes documents in any language. Assessments with non-English artifacts don’t require native-language auditors — the AI analyzes the document and returns findings and evidence quotes in English. No special configuration is needed. Proceed with assessments containing foreign-language artifacts exactly as you would with English documents.

Notification Contacts

Set organization-level contacts for vendor communications and incident response from Settings → Org Profile → Notifications:
  • Support Contact — the name and email vendors see in assessment communications
  • Incident Response Contact — receives all risk advisory notifications across your portfolio
See Notifications & Alerts for the full notification configuration reference.