Trust center

Every claim on this site has a receipt. Here's where to find them.

SupplierSpy publishes the rubric, the signals, the signatures, the changes, and the corrections — openly. This page curates every trust surface in one place so procurement, press, and researchers can audit the benchmark end-to-end.

Last reviewed: 2026-04-17

Methodology

The scoring rubric: 8 dimensions, integer weights summing to 100, pinned at v1.0 for stability.

Signals receipts

Every score on the site has a per-dimension, per-source audit trail you can open page-by-page.

Changelog

What changed, when, and why. Separate append-only log for factual corrections.

Signed snapshots

Every data snapshot is archived and signed with ECDSA P-256 so tampering is detectable.

Signing-key fingerprint: sha256:5fb9669f3c1e42637b55204dfc98ab79

Reproducibility

Re-run the pipeline locally. Same inputs, same outputs, same signatures.

Audits

External and self-audits of the rubric, scoring math, and data flow.

Public mentions

Press, citations, and mentions of each supplier from public sources.

AI rubric sanity-check

Independent LLM evaluation of each supplier against the rubric, surfaced as a second opinion.

Sponsorship policy

No paid placements. No affiliate money. The policy is published because the denials only matter if the text is fixed.

Security

Vulnerability disclosure with a 48h acknowledgment SLA and safe-harbor language.

Privacy, Terms, Cookies, DMCA, Imprint

The full legal surface — short, honest, readable without a lawyer.

Accessibility statement

WCAG 2.2 AA target, with an honest list of the bits that aren't there yet.

Contact

Four inboxes for the one person who runs this: general, press, abuse, security.

Monitor / system status

Live view of the refresh pipeline, last snapshot time, and signing status.