Templates, checklists, reference architectures and playbooks distilled from real engagements. Pay once, download, keep forever. No retainer, no procurement cycle.
Twelve ADR examples from real projects, plus the lightweight format we use internally to keep architecture decisions auditable.
The template + facilitator guide we run after every production incident. Includes scoring rubric and a sample completed report.
An 84-item review covering SLOs, observability, on-call, capacity, security & data — the exact list we run before any launch we own.
The scorecards, take-home and interview scripts we use to hire our own team. Includes calibration guide and example completed scorecards.
Indexing, query planning, replication, autovacuum, partitioning — condensed from years of production debugging. 60 pages, no fluff.
Cluster hardening checklist, Terraform module, network policies and the audit tooling we deploy on day one of every K8s engagement.
A working Stripe + idempotency + audit-log codebase, with proration, dunning, invoice retry — and the docs that explain every decision.
Policies, control matrix, evidence templates and the runbook we use to take clients from cold start to Type I audit in twelve weeks.
Engagement model is independent of service. Most clients start with a Discovery, then move into Build, then optionally Operate.
If something isn’t answered here, ask in your intro email — we keep this list short on purpose.
Rarely, and only after a Discovery sprint. Fixed bids on novel software are usually a polite way to be wrong on paper. We’d rather price the team and ship the work.
You do, fully assigned from day one. Our standard MSA includes work-for-hire and IP assignment with no carve-outs. We don’t retain rights to anything we build for you.
Yes — that’s the default. We adopt your stack, conventions and review process. If we propose a deviation we’ll write up why and get sign-off first.
Discovery sprints typically start inside ten days. Full build engagements need three to five weeks of lead time so we can staff the right team — we don’t scramble bodies.
We work routinely in HIPAA, PCI-DSS, SOC 2 and FedRAMP-aligned environments. We’ll sign BAAs and DPAs and adapt to your control framework — that’s normal practice for us.
Yes — UX is a standalone service. We just refuse to ship design that can’t be built in your stack. Engineers review every deliverable before handoff.
Send a paragraph about the problem. We’ll come back inside 48 hours with a written take — team shape, cost envelope, riskiest assumptions.