We use cookies and similar technologies to improve your experience and analyse usage. By continuing you agree to our Privacy Policy.

    VendorLens

    iGaming

    Trust Center Software for iGaming Operators

    Share compliance, security and vendor due diligence documents faster with VendorLens. iGaming operators work in one of the most scrutinised digital industries in the world — every vendor, payment provider, game supplier, affiliate, KYC vendor and hosting partner can trigger document requests from auditors, regulators, banks and risk teams. VendorLens gives your business a single branded portal to organise and share the trust, security, privacy and compliance materials those stakeholders ask for.

    Who's asking

    Platform providers, game studios, payment service providers, banks, affiliates, compliance consultants, auditors, hosting partners, KYC/AML and fraud vendors, and operator risk teams running due diligence before integration or contract signature.

    Documents typically shared in iGaming

    Operating licenses (per jurisdiction)
    RNG / RTP certifications
    Responsible gambling policy
    AML / KYC policy and procedures
    SOC 2 Type 2 report
    ISO 27001 certificate
    Penetration test summary
    Data processing agreement (DPA)
    Business continuity & incident response policies
    Insurance certificates
    Subprocessor list
    Information security policy

    What slows down deals today

    Sensitive docs sent over email

    Files get forwarded, old versions stay in circulation and access is hard to revoke. Email is fast but it leaves you with no audit trail of who received what.

    Same questions, every partner

    PSPs, banks, game suppliers and platforms repeatedly ask for the same AML, security and compliance information in slightly different formats.

    Procurement stalls integrations

    Legal, compliance, finance, infosec and commercial all need to review before a vendor goes live. Without a central portal, document chasing slows every deal.

    Why iGaming operators need a trust center

    iGaming operators deal with a wide range of stakeholders: platform providers, game studios, payment service providers, banks, affiliates, compliance consultants, auditors, hosting partners, support vendors, responsible gaming tools, KYC and AML providers, fraud vendors and sometimes regulators or certification bodies. Each relationship can create document requests.

    A PSP may ask for company information, licensing details, AML policies, data protection controls and transaction monitoring procedures. A game supplier may ask for market coverage, technical setup, responsible gaming controls and operational processes. A bank may ask for ownership documents, regulatory status, risk procedures and security evidence. A platform partner may ask for incident management, business continuity, penetration testing and information security documents.

    The problem is rarely that the operator does not have the information. The problem is that it is spread across email threads, shared drives, compliance folders, legal, finance and technical teams. VendorLens centralises the key materials partners usually request and presents them in a structured, branded and controlled way.

    Stop sending sensitive documents over email

    Many operators still share critical documents manually by email. That works in the early days but becomes messy fast. Files get forwarded, old versions remain in circulation, different partners receive different documents and access is difficult to revoke.

    VendorLens gives operators an NDA-gated trust center where sensitive documents are made available only to approved recipients. This is especially useful for SOC 2 reports, ISO certificates, pen test summaries, DPAs, business continuity and incident response policies, AML procedures, responsible gaming policies, supplier due diligence forms, insurance documents, regulatory confirmations and technical architecture summaries.

    Not every document should be public. VendorLens helps operators cleanly separate public trust information from sensitive downloadable files that require controlled access.

    Built for commercial, compliance and operations teams

    In iGaming, speed matters. Commercial teams want to close platform deals, launch new markets, onboard payment providers, activate affiliates and move through procurement quickly. Compliance and operations teams need to make sure the right information is shared, sensitive documents are protected and partner requests are handled consistently.

    VendorLens sits between those two needs. Commercial teams get a professional link they can send during sales, procurement or onboarding. Compliance and operations teams get better control over what is available, which documents are downloadable and how sensitive materials are accessed — reducing the constant back-and-forth that happens when every partner asks for the same information in a slightly different format.

    Reduce repetitive security questionnaires

    Security questionnaires are painful, but they are not going away. Operators are regularly asked similar questions by PSPs, platform partners, enterprise customers, B2B suppliers, auditors and major affiliates — covering access control, encryption, infrastructure, incident response, retention, subprocessors, BCP, DR, privacy, monitoring, vulnerability management and employee controls.

    With VendorLens, common answers and supporting documents are centralised in one source of truth. That reduces duplication, improves answer consistency and makes it easier for non-technical teams to respond without constantly chasing engineering, compliance or security — particularly for operators working across multiple jurisdictions or vendors.

    Useful for both B2C operators and B2B suppliers

    VendorLens is useful for B2C iGaming operators, and equally relevant for B2B SaaS providers, platform companies, aggregators, PSPs, affiliate platforms, KYC vendors and fraud tools serving the industry. Operators need to assess suppliers before integrating them. Suppliers need to prove they are secure, reliable and compliant enough to work with regulated operators.

    A B2B supplier uses VendorLens to share SOC 2 reports, ISO certificates, pen test summaries, subprocessors, DPAs, hosting details, support procedures and security policies with operators. An operator uses it to share company information, compliance documentation, operational policies and partner onboarding material with suppliers, banks, PSPs and other stakeholders. In both cases the goal is the same: reduce friction, improve confidence and avoid endless document chasing.

    Designed for lean teams

    Not every iGaming business wants or needs a full enterprise GRC platform. Many operators and suppliers need something simpler: a branded portal to publish key trust information, upload documents, gate sensitive files behind NDA approval and give partners a clean place to access due diligence materials.

    You may already have the policies, certificates and documents — managed in spreadsheets, shared folders, ticketing systems, Confluence or internal drives. VendorLens gives you a better external-facing layer for sharing the right information with the right people, without replacing your compliance, legal or risk function.

    Control what is public and what is restricted

    Some trust information should be easy to access — a company overview, high-level security statement, list of certifications, support information, responsible gaming statement or privacy summary. Other information should be restricted — SOC 2 reports, pen test summaries, insurance documents, detailed policies, technical diagrams and sensitive compliance evidence.

    VendorLens lets operators separate public trust content from restricted documents, so you can support transparency without giving away sensitive operational, security or compliance material too freely. For iGaming businesses, that balance matters.

    Why VendorLens is different from a shared folder

    A shared folder stores files. A trust center communicates trust. A folder may be useful internally, but it rarely gives partners a clear experience — it lacks structure, context, branding, version control, access gating and a professional presentation layer.

    VendorLens gives your documentation a front door. Partners can understand what your company does, what standards you follow, which documents are available, which require approval and how to request access — a cleaner experience than a list of attachments or a generic drive link, and a single approved place for external trust materials.

    Build trust before the contract stage

    In iGaming, trust is often built before contracts are signed. A partner wants to know whether you are serious. A supplier wants to know whether your operation is credible. A PSP wants to understand your risk profile. A bank wants comfort around governance and controls. A platform provider wants to know whether onboarding will be smooth.

    A VendorLens trust center helps answer those questions earlier. It gives partners confidence that your business has thought about security, privacy, compliance and operational resilience, and it helps your own team avoid unnecessary delays caused by repeated document requests. The more professional your trust process looks, the easier it becomes for serious partners to engage with you.

    Common use cases in iGaming

    Sharing compliance packs with payment providers.
    Providing security documentation to platform partners.
    Responding to supplier due diligence requests.
    Managing access to SOC 2, ISO and penetration testing evidence.
    Sharing onboarding documentation with affiliates and commercial partners.
    Giving banks and PSPs a structured overview of business controls.
    Supporting procurement and risk reviews for new vendors.
    Publishing a professional trust page for prospects and partners.
    Reducing repeated internal requests for the same documents.
    Creating a single reusable trust profile for your organisation.

    Frequently asked

    Is VendorLens suitable for both B2C operators and B2B iGaming suppliers?

    Yes. Operators use it to share compliance, AML and security material with PSPs, banks and platform partners. B2B suppliers — platforms, aggregators, KYC vendors, payment and fraud tools — use it to share SOC 2, ISO, DPAs, subprocessors and penetration test summaries with the operators reviewing them. The trust problem exists on both sides of the relationship.

    Can I show different documents to different operators or jurisdictions?

    Public trust content (company overview, certifications, responsible gaming statement) is visible to everyone. Sensitive materials — SOC 2 reports, pen test summaries, regulator letters, insurance, detailed policies — can be NDA-gated so each partner submits a request, signs the NDA and receives a watermarked, time-limited download.

    Does VendorLens replace our compliance, legal or GRC function?

    No. VendorLens is the external-facing layer for sharing the documents your compliance and legal teams already produce. It is not a replacement for your compliance function, internal risk framework or GRC platform — it just makes the sharing and presentation of trust information easier.

    How does this help with payment provider and bank onboarding?

    Instead of waiting for the full PSP or banking document list, you proactively share a trust center link covering company info, licensing, AML, data protection, security controls and operational policies. That moves most of the document collection out of email and into a controlled flow with a clear audit trail.

    Can we use VendorLens for multi-brand or multi-entity setups?

    Yes. On the Business plan you can run separate trust pages per brand, jurisdiction or legal entity, each on its own custom domain.

    Ready for a igaming trust portal?

    Free to start. Custom domain on Pro and Business.