Attestations

Current certifications and compliance attestations.

IPS maintains certifications and attestations appropriate to a regulated payments operator. The list below represents our current state. Additional certifications are added as they are earned. Detailed audit reports and certification documents are not publicly downloadable; they are available to verified institutional partners through the institutional access process.

PCI DSS Self-Assessment Questionnaire A

Classification: PCI DSS SAQ-A Assessment type: Self-assessment validated by IPS as the merchant Scope: Cardholder data handling for card-funded inbound payment operations. The assessment confirms that IPS outsources all cardholder data functions to PCI DSS validated third parties and does not store, process, or transmit cardholder data on its own systems. Status: Signed 13 April 2026

LGPD compliance posture

Status: Active Scope: Personal data processing across all customer-facing operations under Lei 13.709 of 2018 (LGPD) Designated Data Protection Officer in place. Privacy policy publicly accessible. Data subject request channel operational. Records of processing activities maintained internally.

Planned and in-progress

Additional certifications are under development. Specific certifications, certifying bodies, and timelines are confirmed as they are committed. Speculative or aspirational certifications are not listed.

Audit reports and detailed documentation

Specific audit reports, certification documents, and detailed compliance documentation are not publicly downloadable. These materials are available to verified institutional partners — partner banks, regulators, qualified investors performing substantive due diligence — through the institutional access process. Verification of the requesting party's institutional affiliation is part of the access process.