TL;DR
π‘οΈ Trust Passport = your living readiness graph. MRCC Certificate = signed snapshot you share with auditors.
| π‘οΈ Trust Passport | π MRCC Certificate | |
|---|---|---|
| Nature | Living, continuously updated | Snapshot, signed by experts |
| Audience | Internal, prospects, partners | Auditors, regulators, key customers |
| Issuance | Auto from your assessments | Issued at confidence threshold |
| Shareable | Yes (link or embed) | Yes (PDF + verify URL) |
| Plan | Starter+ | Launch+ |
π― Which one for which moment?
| You want to⦠| Use |
|---|---|
| Show readiness on your website footer | π‘οΈ Trust Passport |
| Reply to a vendor security questionnaire | π‘οΈ Trust Passport + π MRCC excerpt |
| Pass an enterprise customer audit | π MRCC Certificate |
| Demonstrate readiness to a notified body | π MRCC + your own technical file |
| Track your own progress quarter over quarter | π‘οΈ Trust Passport (with trend) |
π Together
You always own a Trust Passport first. Once your readiness crosses the threshold for one or more frameworks, you can request the MRCC to be issued as a signed snapshot.
β‘οΈ Next
π¬ Need help?
- Reach out via our live chat (bottom-right) β Captain AI replies instantly, human experts within business hours.
- Email support@nexcyber.eu with
[P1]for Command/Strategic priority issues.
βΉοΈ Disclaimer β RICE provides a readiness analysis, not legal advice. Final compliance may require legal review or notified body certification.
Last reviewed: 2026-06-02 Β· NexCyber Help Center