10 questions, ~6 minutes. Score your team's SOC 2 readiness across the tier-1 controls enterprise security reviewers ask about first.
A fast self-serve check that scores founder-led SaaS teams on the five SOC 2 controls that show up in enterprise security reviews first — ISP, MFA, access control, incident response, and vendor risk. You'll get a 0–15 readiness score, the gaps to close first, and a one-click path to the policies you need to ship them.
Free. 10 questions, ~6 minutes. Get a 0–30 score and a punch list of gaps.
No account needed. We save your progress as you go — close the tab and come back anytime.
Twenty questions, four frameworks, one prioritized punch list of gaps.
The five criteria enterprise security reviewers grade you on — security, availability, processing integrity, confidentiality, privacy.
Lawful basis, sub-processors, breach notification timelines, and the records your DPO needs to produce on request.
The Annex A controls and statement-of-applicability logic that international enterprise buyers ask about early.
Administrative, physical, and technical safeguards that apply as soon as you touch PHI — even as a sub-processor.
Skip the scorecard for today and ship with the SOC 2 Starter Kit — 12 audit-ready templates founders can customize in a weekend.