We’d rather ship a real packet later than a polished one that overstates what’s enforced today. If you need it now for a procurement review, ask and we’ll send what we have plus a clear list of what’s still on the roadmap.
01Architecture overview, written long-form to match the Trust page diagram 1:1.
02The 12 commitments with the same Architectural / Contractual / On-roadmap labels, expanded with technical detail.
03Sub-processor list with data-handling specifics; standard DPAs in use today, custom DPAs available for Enterprise. Anthropic, Railway, Plaid, Microsoft Graph today (Plaid & M365 per-tenant opt-in); WorkOS SSO planned for the SaaS launch.
04Standard vendor security questionnaire pre-answered (CAIQ + SIG Lite).
05Incident response runbook, business continuity plan, data deletion procedure.
06Compliance roadmap with honest dates, including what we have not yet started.