Objective of the Standard
The standard ESCODI-QRO-001 V1.0 (Estándar de Confianza Digital) is the methodological framework of QRO. VERIFICADO designed to structure evaluation criteria regarding digital trust, organization identity, website transparency, and technical security conditions across its validation processes.
ESCODI-QRO-001 does not determine by itself the absolute commercial quality or financial solvency of an organization, but rather establishes verifiable criteria to evaluate their digital presence objectively.
What ESCODI Is and Is Not
ESCODI IS:
- Methodological standard of QRO. VERIFICADO.
- Structured evaluation criteria framework.
- Documentary and technical reference for digital trust.
- Key component of the QRO. VERIFICADO ecosystem.
ESCODI IS NOT:
- A government regulation or Official Mexican Standard (NOM).
- An official state certification or accreditation.
- A regulatory authority or government entity.
- An absolute guarantee of commercial success or quality.
ESCODI and Digital Trust Validation
Within the QRO. VERIFICADO ecosystem, each component fulfills a clear, distinct role:
QRO. VERIFICADO ➔ ESCODI-QRO-001 V1.0 ➔ Digital Trust Validation ➔ Evidence & Record (according to the applicable process)
ESCODI-QRO-001 provides the methodological framework defining criteria. Digital Trust Validation applies those criteria to the corresponding case. Evidence and Record document and make information accessible according to the applicable process.
Guiding Principles
The evaluation under ESCODI-QRO-001 V1.0 is guided by six fundamental principles:
- Legitimacy: Verifiable correspondence between declared identity, available information, and evidence required by the process.
- Transparency: Clear presentation of organization ownership, contact channels, applicable policies, and operational terms.
- Security: Review of technical elements and observable security controls, including HTTPS protocol and basic protection parameters.
- Privacy: Responsible processing of information requested during the process in compliance with privacy regulations.
- Objectivity: Evaluation based on verifiable technical, documentary, or functional evidence, avoiding subjective appraisals.
- Data Minimization: Requesting only documentation strictly necessary to accredit each criterion, prioritizing verification mechanisms that reduce personal data collection.
Scope & Exclusions
Scope: Applicable to websites, portals, e-commerce platforms, and service providers seeking to evaluate and document their digital trust parameters.
Exclusions: The standard does not evaluate commercial pricing fairness, intrinsic product quality, customer satisfaction in private disputes, nor does it replace official state licensing, ISO certifications, or financial guarantees. Validation is strictly limited to the criteria and evidence defined within the scope of the corresponding evaluation process.
Principle of Documentary Proportionality
Documentation required during the evaluation process must directly relate to the criterion it aims to accredit and be limited to what is strictly necessary to issue an objective result.
Tax Registry certificates (CSF), licenses, or official permits may be accepted when pertinent, but they do not constitute a universal requirement unless explicitly required by the nature of the evaluated criterion.
Hierarchy of Evidence
When a criterion can be verified through different sources, the standard establishes a methodological preference for direct, objective, and traceable evidence:
- Technical evidence: Obtained through website inspection, security analysis, or automated verification mechanisms.
- Public evidence: Obtained through directories, public records, official social channels, or verifiable public sources.
- Functional evidence: Obtained through operational checks, such as telephone verification, form testing, or email inquiries.
- Documentary evidence: Requested only when previous types of evidence are insufficient to accredit the corresponding criterion.
Site and Standard Versioning Policy
To ensure long-term consistency, QRO. VERIFICADO maintains distinct levels of versioning across its framework:
- Standard Version: Defines evaluation criteria (e.g.,
ESCODI-QRO-001 V1.0). - Platform Version: Identifies technical system code and automation updates.
- Documentary Version: Manages updates in public guidelines, policies, and manual documents.
Standard Version Log
Current active version of the evaluation standard:
| Standard Version | Status | Validity |
|---|---|---|
| ESCODI-QRO-001 V1.0 | Active / Vigente | Since 2026 |
This page reflects the current public active version of the standard. Future modifications will be identified through the corresponding controlled versioning process.
Evolution of the Standard
Methodological criteria may evolve as digital technologies, security parameters, and ecosystem needs advance. Under our controlled change policy:
- Standard updates may be reviewed and published periodically.
- Newly published standard versions do not automatically invalidate currently active validation records.
- Active validation records remain valid until their scheduled expiration date, and subsequent renewals will be evaluated under the active standard version at the date of renewal.
- Public version history remains accessible for transparency.
Multilayer Validation Architecture (AVM-QRO V1.0)
The standard officially references the AVM-QRO V1.0 architecture (Context, Cryptography, Access Control, Auditability, and Continuous Monitoring) as the technical model providing implementation layers for validation controls and badge integrity. For technical details, visit the AVM-QRO Architecture Portal.