# Trust Center (Notchset): prompt.md (v1.0.0)

- id: `trust-center` · version 1.0.0 · block · pro (Pro)
- category: Marketing
- build: Base UI (one set of files; its dependencies follow the build)
- install (this build): `npx shadcn@latest add @notchset-pro/trust-center`
- npm dependencies: class-variance-authority@^0.7
- registry dependencies: utils, https://notchset.dev/r/notchset-foundation.json
- docs: https://notchset.dev/components/trust-center
- The install command carries everything this item needs (files, CSS, tokens, npm and registry dependencies). Prefer it to copying source by hand.

A trust center: certification cards whose ring of dots fills when picked, each certification's scope and facts (auditor, period, renewal) beside a request-under-NDA form that refuses personal email domains with a shake and confirms what was sent, a DPA link where no report applies, a subprocessor table that unrolls, and the security contact and bug bounty.

## Build it
- Stack: React 19 (`ref` is a plain prop), TypeScript, Tailwind CSS v4 utilities, a shadcn-initialised project with the `@/*` alias.
- Packages: `class-variance-authority@^0.7`.
- Files: `components/ui/notchset/blocks/trust-center.tsx`; shared code: `lib/beautiful-ui/notchset/instrument.tsx`, `lib/beautiful-ui/notchset/root.ts`, `lib/beautiful-ui/notchset/button-variants.ts`, `lib/beautiful-ui/notchset/field-classes.ts`.
- Registry dependencies, installed with it automatically: shadcn `utils` (cn), `notchset-foundation`.
- Builds: one set of files for both, but its dependencies come in Base UI and Radix builds. Install the one that matches the project (see Install): a free item's bare URL installs the Base UI build of it and its dependencies.
- Exports to keep: `TrustCenter`, and every exported type.
- CSS: the install adds the notchset foundation (tokens, keyframes, motion levels) to your global stylesheet once. Nothing to import by hand.
- Re-running `add` (or `--overwrite`) re-applies those rules: put overrides in your own CSS, never in the installed rules.
- Tokens: retheme with the `--notchset-*` custom properties (`--notchset-check`, `--notchset-control-edge`, `--notchset-draw-from`, `--notchset-ease-bloom`, `--notchset-ease-glide`, `--notchset-ease-key-down`, `--notchset-ease-key-up`, `--notchset-ease-travel`, `--notchset-fade`, `--notchset-focus-color`, `--notchset-focus-inset`, `--notchset-grow-to`, `--notchset-key-down`, `--notchset-key-up`, `--notchset-life-from`, `--notchset-life-ms`, `--notchset-node-blink`, `--notchset-node-bloom`, `--notchset-node-delay`, `--notchset-plate-color`, `--notchset-rise-from`, `--notchset-rule`, `--notchset-scan-to`, `--notchset-scroll`, `--notchset-sheet-from`, `--notchset-signal`, `--notchset-sweep-to`, `--notchset-travel`). Never add Tailwind colour classes inside the component.

```tsx
import { TrustCenter, type TrustCert } from "@/components/ui/notchset/blocks/trust-center";
```

## Parts

| Part | data-slot | What it is for |
|---|---|---|
| `TrustCenter` | `trust-center` | Certification cards, the scope and request panel, subprocessors and the footer. |

Style a part with `[data-slot="<slot>"]` selectors or its `className`; keep the attributes when editing.

## Sound
- Keep every `data-slot` and `data-sound` attribute: the sound layer reads them.
- Installing this item adds no audio. Nothing plays until the app mounts `SoundProvider` once (install: `npx shadcn@latest add https://notchset.dev/r/notchset-sound.json`, import from `@/components/ui/notchset/sound-provider`); `useSound()` gives `muted` and `setMuted` for a mute control. Without a provider the audio engine never loads.

## Match the original
- Read `components/ui/notchset/blocks/trust-center.tsx` as the reference implementation before changing or recreating anything, and match it: sizes, colours per theme, motion timings, copy and behaviour.
- If you deviate (a prop you can't honour, a style you changed, a dependency you swapped), say so in your reply, part by part.
- Keep the accessibility contract, the keyboard map and the motion levels listed below.

## Use it when
- trust center, security page, SOC 2, ISO 27001, GDPR, compliance, subprocessors, security review, Notchset
- A security and compliance page for enterprise buyers
- Handing out audit reports under NDA

### Not when
- Certifications you don't hold yet
- Legal terms: link to the policy pages

## Mistakes
- Send reports from the server and record who asked
- Keep the personal-domain list in step with your sales policy

## Usage

```tsx
import { TrustCenter, type TrustCert } from "@/components/ui/notchset/blocks/trust-center";

export function Trust({ certs }: { certs: TrustCert[] }) {
  return (
    <TrustCenter
      title="Built to pass your security review"
      certs={certs}
      onRequest={async (cert: TrustCert, email: string) => {
        await fetch("/api/trust/requests", { method: "POST", body: JSON.stringify({ cert: cert.id, email }) });
      }}
    />
  );
}
```

## Props

| Prop | Type | Default | What it does |
|---|---|---|---|
| `certs` | `{ id, name, status, scope, facts, report?, dpa? }[]` |  | report names what's sent on request; dpa { title, text, action, href } replaces the form. |
| `onRequest` | `(cert, email) => Promise<void>` |  | Send the report under NDA; a rejection shows TRY AGAIN. |
| `subprocessors / contact / bounty` | `{ name, purpose, region }[] / string / string` |  | The table and the footer lines. |
| `personalDomains` | `string[]` |  | Domains refused as personal (Gmail, Outlook, iCloud… by default). |

Full docs: https://notchset.dev/components/trust-center

## Customising
- Colours: the component reads your shadcn tokens (`--background`, `--foreground`, `--border` …), refined by the `--notchset-*` tokens. The signal colour is `--notchset-signal` (it falls back to `--destructive`). Set tokens on `:root`, or on any container to retheme one area.
- Dark mode follows the `.dark` class on an ancestor (the shadcn and next-themes convention).
- Update later by re-running the install with `--overwrite` (review the diff if you edited it). Changelog: https://notchset.dev/r/changelog.json

## Keyboard

| Keys | Action |
|---|---|
| ← → | Switch certification |
| Enter | Send the request |

## Performance

- Plain DOM and CSS transitions.

## Responsive

- Cards wrap to fit; under 760px (container width) the request form sits under the facts.

## Motion inventory

| Interaction | What moves |
|---|---|
| Pick or hover | The ring fills clockwise, 22ms a dot, then the centre pops |
| Refused email | The field shakes |
| Sending | A scanner, then the confirmation rises in |

## Accessibility contract (preserve when editing)
- Certifications are tabs (arrow keys move) controlling a labelled panel
- The form shows its own errors in a polite region linked to the field (noValidate)
- Subprocessors are a real table with row headers

## Install

```bash
npx shadcn@latest add @notchset-pro/trust-center
```

Pro item: needs the `@notchset-pro` registry in `components.json` and `NOTCHSET_TOKEN` in `.env.local` (https://notchset.dev/account). Setup: https://notchset.dev/docs/pro. Your components.json `style` picks the build: radix-*, new-york and default get Radix, base-* gets Base UI.

## Credits
- Built on shadcn/ui (https://ui.shadcn.com)

The notchset foundation (the tokens listed above, keyframes and motion levels) installs once with the first component; its CSS is public at https://notchset.dev/r/notchset-foundation.json.
