← Back to home

Trust · in the open

Our SOC 2 journey.

We help companies get audit-ready — so we hold ourselves to the same bar, in public. Here's exactly where we are, updated as we progress.

Last updated: January 12, 2027
  1. Scoping & readiness planning

    Complete

    Defined the systems, data flows, and Trust Services Criteria in scope, and set the roadmap for a SOC 2 Type II examination.

  2. Gap assessment

    In progress

    Mapping current controls against SOC 2 criteria to identify gaps across security, availability, and confidentiality.

  3. Control implementation & policies

    Upcoming

    Rolling out policies, access controls, logging, vendor management, and secure-SDLC practices to close identified gaps.

  4. Evidence collection (observation period)

    Upcoming

    Operating controls over a continuous observation window and collecting the evidence auditors require for a Type II report.

  5. Independent audit

    Upcoming

    Engaging a licensed CPA firm to perform the SOC 2 examination.

  6. Report issued

    Upcoming

    SOC 2 report available to customers and prospects under NDA.

Frameworks in scope

  • SOC 2 (Type II) — in progress
  • ISO 27001 — in progress
  • GDPR / CCPA — privacy program in place

For prospective customers

Need our current status letter, security questionnaire, or a DPA for procurement? We're happy to share where we are and our timeline under NDA.

Request our security package

This page reflects our status as of January 12, 2027 and is maintained for transparency. Certification timelines depend on the audit firm and observation period; we'll update each milestone as it's reached.