Privacy Policy

International Standards & Accreditation Board (ISAB)

bluestar webbox privacy policy 1024x512 1218 v1 press

Safeguarding Integrity in the Accreditation Ecosystem.

Last Updated: July 19, 2026

The International Standards & Accreditation Board (ISAB) respects your privacy and is committed to protecting the personal data we collect. This Privacy Policy explains how we handle data within our accreditation ecosystem and verification portal.

1. Data Collection

We collect two distinct types of data:

  • Public Registry Data: This includes the names of accredited organizations, certification status, scope of accreditation, and expiration dates. This information is considered “Public Record” and is the primary purpose of our verification portal.
  • Private Administrative Data: This includes holder email addresses, internal audit remarks, and suspension reasons. This information is strictly confidential and is used only for board-to-client communication and compliance oversight.

2. How We Secure Your Data

ISAB employs advanced cryptographic protocols to ensure the integrity of your information:

  • SHA-256 Cryptographic Hashing: We secure certificate records using SHA-256 hashing, creating a unique digital fingerprint for every document. This ensures that records in our registry cannot be surreptitiously altered without immediate detection.
  • Immutable Audit Ledger: All actions taken on a certificate (issuance, suspension, or change in scope) are recorded in an immutable audit ledger. This ensures a permanent, traceable history of accreditation compliance.
  • Secure API Connections: When our partner platforms query our database via our API, data is exchanged using secure, key-authenticated headers to ensure that only authorized partners can access verification services.

3. Disclosure of Information

As an Accreditation Board, we operate a Public Verification Portal. By applying for ISAB accreditation, you consent to the public disclosure of your certification status, standard, and registration ID.

  • We do NOT sell, trade, or rent private contact information (such as personal email addresses or internal remarks) to third parties.
  • Regulatory Compliance: We may disclose information if required by law, such as to government regulatory bodies or during a formal legal investigation into a fraud report filed via our Whistleblower Engine.

4. Security & Bot Defense

To protect the integrity of our ledger, we use automated security tools (such as Cloudflare Turnstile) to prevent automated “scraping” of our data. We also track anonymized geolocation data for analytics purposes to monitor the global usage of our verification services, ensuring that the ledger is being used by legitimate, human-verified traffic.

5. Your Rights

  • Access & Correction: You have the right to request access to the data we hold about you and to request corrections for any inaccuracies in your certificate details.
  • Right to Erasure: If your accreditation is terminated, you may request the archiving of your data. Note, however, that an entry in the Audit Ledger may remain as a historical record of the accreditation timeline to maintain the integrity of our global board standards.

6. Contact Us

For questions regarding this policy or to submit a formal request regarding your data, please contact our Office of Impartiality:

International Standards & Accreditation Board (ISAB)

Email: info@isab.global

Address: Midtown Manhattan 123 5th Avenue, New York USA

Data Compliance Officer: Robin Jhonson