Trust Centre

Evidence for buyer and procurement review.

This centre separates verified operating facts from owner-approved policies, review drafts, and unresolved commercial go-live dependencies.

Review the operating boundary before sharing information.

Privacy and data handling

Controller identity, contact routes, data categories, retention targets, analytics consent, and service-provider review boundaries.

Read the Privacy Notice

Security overview

Verified public/private boundaries, reporting contact, limitations, and the commercial activation boundary.

Read the Security Overview

Human review

How Norraz separates AI assistance from substantive human review and final approval.

Read the review method

Trigger Check B2B terms

Business-customer price, scope, payment-confirmation authority, cancellation principles and service limitations.

Read the Trigger Check terms

Published Reviews

Sanitized public snapshots are separate from private client work and may be published only through the existing controlled publication boundary.

Browse Published Reviews

Contracting identity and contact routes.

Brand: Norraz

Legal entity and data controller: LingMa Konsult AB, organisation number 559087-3104

Office: Företagsvägen 9, 954 33 Luleå, Sweden

General: admin@norraz.se
Privacy: privacy@norraz.se
Security: security@norraz.se

The public site is not a customer workspace.

InformationMay appear publiclyPrivate by default
Synthetic examplesYes, when clearly labelled and fixture-backed.No real customer or Production data.
Published ReviewsOnly sanitized, eligible publication snapshots using the approved allowlist.Customer inputs, evidence gaps, working assumptions, reviewer notes, AI-review data, scores and internal identifiers.
Method and limitationsProduct workflow, output categories, human-review method and limitations.Internal prompts, operational controls and sensitive security details.
Customer authorizationA publication may be described as authorized only after explicit approval.Consent records, correspondence and withdrawal handling remain private.

AI-assisted processing is subject to approved data handling.

Identifiable, confidential or sensitive customer information must not be processed through AI services unless the relevant contractual, privacy, retention and data-handling controls have been reviewed and approved.

No AI service is currently approved for identifiable, confidential or sensitive customer data.

B2B Trigger Check is the approved commercial scope.

Trigger Check is currently available only to business customers at SEK 9,500 plus applicable VAT. Consumer purchasing is excluded from this launch.

Stripe-hosted checkout collects payment details. Payment is confirmed only when Norraz verifies the signed Stripe webhook; the success page does not confirm payment or start the service.

Relevant legal, privacy and provider controls remain subject to review. This launch does not claim that every review, including Swedish consumer-law review, is complete.

For enterprise or procurement questions, contact admin@norraz.se. Report security concerns to security@norraz.se.

Questions a reviewer should resolve before purchase.

Does Norraz hold ISO 27001 or SOC 2 certification?

No Norraz certification or independent assurance is claimed. Provider certifications do not certify Norraz.

Does the public site expose private Decision Review records?

No. Public rendering uses a separate, sanitized snapshot and an allowlisted server boundary. Internal records and identifiers are excluded.

Can we send confidential material in the first request?

No. Start with a non-sensitive description. Scope, handling requirements and approved providers must be confirmed before detailed material is supplied.

Is Decision Review available for direct purchase?

No. Decision Review is Beta and request-first. Norraz confirms fit, scope, evidence needs, price, timing and capacity before work begins.

Can a client review be published automatically?

No. Publication is optional and separate. It requires the existing eligibility controls, an explicit publication action and customer authorization where client information is involved.

Are legal and privacy documents fully reviewed?

No. Trigger Check is limited to business customers for this launch. Swedish consumer-law review is not represented as complete, and consumer purchasing is excluded.

Need a scoped answer?

Send the question without confidential attachments. Norraz will identify what is verified and what remains open.