A fast self-serve check that scores founder-led SaaS teams on the five SOC 2 controls that show up in enterprise security reviews first — ISP, MFA, access control, incident response, and vendor risk. You'll get a 0–15 readiness score, the gaps to close first, and a one-click path to the policies you need to ship them.

Take the 10-question SOC 2 readiness check

Free. 10 questions, ~6 minutes. Get a 0–30 score and a punch list of gaps.

No account needed. We save your progress as you go — close the tab and come back anytime.

What the scorecard covers

Twenty questions, four frameworks, one prioritized punch list of gaps.

SOC 2

Trust Service Criteria

The five criteria enterprise security reviewers grade you on — security, availability, processing integrity, confidentiality, privacy.

GDPR

EU Data Protection

Lawful basis, sub-processors, breach notification timelines, and the records your DPO needs to produce on request.

ISO 27001

Information Security MS

The Annex A controls and statement-of-applicability logic that international enterprise buyers ask about early.

HIPAA

Health Data Safeguards

Administrative, physical, and technical safeguards that apply as soon as you touch PHI — even as a sub-processor.

Need the policies right now, not in 10 minutes?

Skip the scorecard for today and ship with the SOC 2 Starter Kit — 12 audit-ready templates founders can customize in a weekend.

Get the Starter Kit — $147 See our trust & security posture