Firm Posture
IRS Security Six
FTC Safeguards
Active Threats
No data yet
Agent Coverage
No data yet
List every provider/application that touches client PII, by category. Used to keep the firm's WISP vendor-risk section current - update this whenever a new third-party vendor is added.
List every AI tool approved for use with firm/client data, and who approved it. Update this whenever a new tool is evaluated and authorized.
| AI Tool | Approved By |
|---|
Staff-maintained record of security incidents (WISP Section VII). Contact your account manager to report a new incident or correct an entry.
| Date | Level | Description | Resolution | Source | Remediated |
|---|
Non-mandatory add-ons beyond minimum WISP requirements (Section VIII). "Not Enabled" is informational, not a compliance failure.
| Enhancement | Status | Result |
|---|
Generate a signed proof that your compliance record history is complete and hasn't been altered - it also shows the real pass rate at the moment it's issued, so it can't be shown off as a clean bill of health while controls are actually failing. Share the token with an auditor, insurer, or your CPA - they can verify it independently below, no login required.
| Control Directive | Platform | Live Event Logs | Audit Status |
|---|
| Control Directive | Platform | Live Event Logs | Audit Status |
|---|
| Asset Hostname | OS Build | Patching | Drive Encryption | AV/Firewall | Threat Hunting | Backup |
|---|