The registry that tells the engine who you actually do business with.
The Trust Center holds four tenant-owned lists that every other engine reads: trusted domains, blocked domains, verified recipients and vendor bank accounts. It is the difference between a platform that guesses and one that knows.
Register a counterparty domain once and routine correspondence with it stops raising flags.
Verify a single mailbox — essential when the counterparty is on a public provider.
Record each vendor's bank details so a change is detected the moment it appears in a message.
Each list is owned by your organization alone and is invisible to every other tenant. Domains are normalised on entry — scheme, path and mailbox stripped, case folded — so the same counterparty cannot be registered twice in two different shapes.
The Trust Center refuses to register a public email provider as a trusted domain. Accepting it would trust every mailbox on that provider, which is the opposite of the platform's purpose.
Entering a full email address in the trusted-domain field is therefore stored as a verified recipient instead — trust at the address level, exactly as intended.
Registering a counterparty does more than silence alerts. Every trusted entry becomes a comparison target: an address within an edit or two of one you have verified is flagged as impersonation and can never read as trusted, even on a domain you otherwise trust.
Add the domains, addresses and bank accounts you already do business with.
Entries are cleaned and de-duplicated on the way in.
Every engine reads the lists during scoring, both to grant and to withhold trust.
Counterparties that clear verification and approval can be added with one confirmation.
The outcome
Alert fatigue drops because the engine stops flagging the counterparties you deal with daily — and sharpens on the ones you do not.
Set up your organization in minutes — no inbound migration required.