Does the platform have any type of forensic recovery in place to identify abuse?
We have a KYC and AML provider (Trulioo), which provides visibility and flagging of any potentially abusive behavior on the platform in addition to an admin panel with further usage insights and reports. User actions on the platform are logged and backed up and can be exposed for further ingestion. The impl
Does your company have any technology escrow in effect?
Rare Goods has technology escrow in place. In addition to the development/test & review process, Rare Goods’ team also leverages GitHub repository for managing software development/sourcecode management & version control.
Do you monitor for unauthorized distribution or fraudulent activity associated with your blockchain/ledger, service, digital assets, or brand presence?
Rare Goods manually monitors for any unauthorized or fraudulent activity associated with the brand and its related assets occurring outside of the platform. The platform is a closed ecosystem requiring admin approval to add additional assets and end-user actions are limited. We have a KYC and AML provider (
Do you monitor for authentication attacks?
Rare Goods uses Auth0 (which supports the principle of layered protection in security) that uses a variety of signals to deter, detect, monitor, delay, and mitigate attacks against the platform and its users. Auth0 allows us to enable the following attack protection options from their dashboard: Bot Detecti
Do you monitor for wallet hijacks in your ecosystem?
Yes. Security is closely monitored for both external threats, and internal team management and custody are also monitored and limited. Currently, the only crypto wallets used on the platform are managed by Rare Goods and are secured using AWS KMS on the backend side. End users have limited ability to connec
Do you monitor for “double spend” attacks within your platform?
Each and any payment on the Rare Goods platform is exclusive to credit cards (via Circle), therefore, “double spend” attacks are impossible (as the payment gateway protects against this).
Has a security audit been performed? If yes, what was the scope of the audit? Is an Executive Summary of the audit report available for review?
Yes. Each of our third-party vendors (Circle for transactions, Trulioo for KYC and fraud, Legal counsel for bonding, Auth0 for user management, fraud, and malicious attack) and our internal development staff regularly perform extensive security and stress testing. An executive summary report has not been co
Please confirm if you are currently following any of these standards: PCI, SOC II, WCAG, ISO
Rare Goods uses Circle as our payment processing provider and Circle is compliant with PCI. No credit card information is saved on the platform and is encrypted before sending to Circle. Rare Goods uses MongoDB Atlas, a SOC II compliant multi-cloud database service. We have worked with Nebraska University t
What is the projected timeline for Conference integration and launch from date of partnership agreement signature?
The scale of this activation is no small task, but the good news is, we’re no stranger to launching multiple programs quickly with major brands and universities. Since the beginning of our NFT ecosystem development in September 2020, we’ve strategically planned for a scalable technology, a
Can users move purchased NFTs to other platforms?
Yes, the user can request a transfer of their NFT assets to an Ethereum compatible crypto wallet address (off-platform) which can be approved and executed by the admin.