> ## Documentation Index
> Fetch the complete documentation index at: https://docs.visotrust.com/llms.txt
> Use this file to discover all available pages before exploring further.

# Trust Profiles

> Manage your Trust Profile in VISO TRUST — the repository of your security documents used to auto-answer inbound questionnaires and power Vendor Discovery.

A **Trust Profile** is your organization's repository of security documentation inside VISO TRUST. It serves two purposes: it feeds Artifact Intelligence with your own artifacts to answer inbound customer questionnaires automatically, and it provides the source material for [Vendor Discovery](/third-parties/vendor-discovery) — surfacing vendors referenced in your documents.

Navigate to **Trust → Knowledge base** to manage your Trust Profile.

## What the Trust Profile Is For

When your organization is a vendor being assessed by a VISO TRUST customer, the assessment process typically involves submitting documentation through a collection request. The Trust Profile eliminates the need to respond manually to every request.

Documents uploaded to your Trust Profile are analyzed by Artifact Intelligence and made available to:

* **Automatically answer questionnaires** — when a customer uses VISO Chat Agent to ask questions about your security program, the AI draws on your Trust Profile artifacts to generate answers
* **Pre-populate assessments** — when a customer assesses your organization, your Trust Profile documents can reduce the number of additional artifacts they need to request
* **Power Vendor Discovery** — VISO TRUST analyzes your artifacts to identify subservicers and vendors referenced in your documents, surfacing them in your [Vendor Discovery](/third-parties/vendor-discovery) feed

<Note>
  Artifacts uploaded to your Trust Profile are **not shared outside your VISO TRUST instance** without your control. They are used internally to answer questions and power discovery — they are not published publicly or automatically shared with customers assessing you.
</Note>

## Adding Artifacts to Your Trust Profile

<Steps>
  <Step title="Go to Trust → Knowledge base">
    This is your Trust Profile management page.
  </Step>

  <Step title="Click Add Artifacts">
    Upload files by dragging and dropping, opening a file browser, or submitting a webpage URL.

    Accepted inputs include:

    * Security documents (SOC 2 reports, ISO 27001 certificates, penetration test reports)
    * Compliance documents (DPAs, privacy policies, sub-processor disclosures)
    * Policies and procedures
    * Security overview pages (via URL)
    * Any other documentation describing your security program
  </Step>

  <Step title="Wait for analysis">
    Artifact Intelligence processes each document automatically. Once analysis is complete, the artifact is available for VISO Chat Agent, questionnaire answering, and vendor discovery.
  </Step>
</Steps>

## Keeping Your Trust Profile Current

The value of your Trust Profile depends on how current your documentation is. Outdated artifacts reduce the quality of AI-generated answers and may give customers an inaccurate picture of your security posture.

Recommendations:

* Upload new SOC 2 or ISO 27001 reports as soon as they're issued
* Update your sub-processor list whenever it changes
* Remove or replace expired artifacts so outdated documents don't generate misleading answers
* Include your security and privacy pages via URL so VISO TRUST can monitor them for changes

## Trust Profile and VISO Chat Agent

When a VISO TRUST customer uses [VISO Chat Agent](/viso-chat/overview) to ask questions about a vendor, the AI searches the vendor's Trust Profile (if one exists) alongside other available evidence. A complete Trust Profile means more accurate, specific answers — and fewer follow-up requests sent to your security team.

## Trust Profile vs. Assessment Artifacts

|                 | Trust Profile                                              | Assessment Artifacts                         |
| --------------- | ---------------------------------------------------------- | -------------------------------------------- |
| **Who uploads** | Your team (as the vendor)                                  | Your team or the vendor, per assessment      |
| **Scope**       | All of VISO TRUST                                          | A specific relationship and assessment       |
| **Used for**    | VISO Chat Agent, questionnaire answering, vendor discovery | Risk scoring, control mapping, residual risk |
| **Visibility**  | Your VISO TRUST instance                                   | The customer's VISO TRUST instance           |

Assessment artifacts collected from a vendor are scoped to that specific relationship and assessment. Trust Profile artifacts are organization-wide and power AI capabilities across your program.
