Digital Application Security Assurance Framework

Security assurance for the organizations behind digital applications.Trust across the digital application lifecycle.

DASAF sets clear requirements for organizations that operate, assess, or build security-sensitive digital applications.

DASAF1.0
DASAF 100OperateDASAF 200AssessDASAF 300Build

One application lifecycle.
Three responsible roles.

Three standards. One framework.

Built around who is responsible.

Certification starts with assessment. It is issued only after the requirements of the chosen DASAF standard are satisfied.

Assessment+Conformity= Certification

From application to public proof.

A clear certification path.

Payment starts an assessment. It does not buy a certificate. A separate certification decision protects the value of every active record.

Start an application
  1. 01

    Application review

  2. 02

    Assessment

  3. 03

    Remediation

  4. 04

    Certification decision

  5. 05

    Certificate issued

  6. 06

    Ongoing surveillance

Public and current.

Check a certification at its source.

Every Certificate of Conformity has a unique number and QR link. The verification page shows the current status, scope, standard version, dates, and Certification Body.

Verify an ID
Demonstration only ยท Not a real certification
DASAFCertificate of Conformity

This certifies that

Example Security Ltd.

conforms to

DASAF 200

Application Security Assessment Provider Standard

DASAF-200-NG-000001Sample record

Choose the standard that matches your role.

Put clear evidence behind your security claims.

Apply for assessmentOpen the registry