Is the audit really included in $499/mo?
Yes. Your first SOC2 Type I audit is bundled into the subscription. No surprise invoice for $15K from an auditor. We work with accredited audit partners and the cost is built into your flat monthly rate.
Can you really get SOC2 in 30 days?
For SOC2 Type I — yes, 30 days is realistic for most startups with standard cloud infrastructure (AWS, GCP, Azure). Type II requires an observation period (typically 3-6 months after Type I), but we start that clock on day 31. Many enterprise buyers accept Type I to move forward while Type II is in progress.
How is this different from Vanta or Drata?
Vanta and Drata sell you a compliance platform — you still need someone who knows GRC to operate it. We sell you the outcome. You don't learn our tool. You answer questions about your business, we handle evidence collection, policy generation, and auditor coordination. Think of it as a service wrapped in software, not software you need to staff.
We have 100+ employees. Is pricing still $499/mo?
Yes. $499/mo for teams up to 150 people. No per-seat pricing, no per-employee scaling. Whether you have 5 engineers or 150, the price stays the same. For larger organizations, contact us for custom pricing.
What cloud providers do you support?
We integrate with AWS, Google Cloud, Azure, and most common SaaS tools (GitHub, Jira, Slack, Okta, etc.). During onboarding, we connect to your infrastructure to automatically gather evidence and monitor compliance controls.
What if we already started with another platform?
We can pick up where you left off. If you've done policy work or evidence gathering in Vanta/Drata, we'll migrate what's usable and fill the gaps. Most teams that switch to us finish faster than they would have staying on their current platform.
What's the Sales Trust Page?
A hosted page (e.g., security.yourcompany.com) that displays your security posture publicly or behind an NDA gate. It shows your SOC2 status, pentest results, uptime, and vendor security. Enterprise prospects often check this before their first call — it speeds up the security review process dramatically.