Answers to the questions buyers, procurement teams, and prime contractors most often ask us. Don't see your question? Send it to us.
Construction, healthcare, finance, real estate and property management, US federal/state/local government, and the Defense Industrial Base. We don't take work outside those areas — the focus is what makes us useful.
United States — primary location is Plant City, Florida. We also maintain a development and operations office in Montreal, Quebec. Sales and project delivery covers the United States and Canada.
Yes. UEI: YY2DR3KSENH7. CAGE: 9YCS7. DUNS: 05-289-2750. SDVOSB Pending · SBA Certification Pending · VA Vets First Pending. Veteran-owned. Active SAM.gov registration.
Not yet — our SDVOSB certification is pending. The application runs through the Veterans Small Business Certification (VetCert) program at the SBA, and VA Vets First eligibility follows from it. Once approved, we will be eligible for SDVOSB set-aside competitions and SDVOSB sole-source awards under federal procurement preferences. Today we compete openly and can serve as an SDVOSB-track subcontractor under primes' subcontracting plans. Our UEI (YY2DR3KSENH7) and CAGE (9YCS7) are already issued, with an active SAM.gov registration.
No. We are software and AI builders, not assessors. We engineer systems that satisfy NIST 800-171 controls and produce the documentation auditors expect, working alongside your assessor or a partner C3PAO. We can refer you to assessment partners.
Yes. We work with established C3PAO firms when our clients need formal certification assessment. The arrangement is collaborative — we engineer the controls; the C3PAO assesses them.
Yes. A signed BAA is part of every healthcare engagement that involves PHI access. We use the OCR-recommended BAA structure or your standard agreement, whichever your compliance team prefers.
Not at this time. We work on unclassified contracts including CUI handling (NIST 800-171, CMMC L1–L2), FedRAMP Moderate, and HIPAA-aligned environments. For classified work, we partner with cleared firms.
Yes. We build for AWS GovCloud, Azure Government, and other FedRAMP Moderate/High authorized environments. We are not ourselves a FedRAMP-authorized SaaS provider — we build custom systems that operate inside our clients' FedRAMP-authorized environments.
We scope to your contract structure — task orders, IDIQ, BPA, commercial fixed-price, or T&M. Most projects ship in 8–14 weeks. CMMC remediation runs 4–9 months. FedRAMP-aligned builds run 6+ months. Quote provided after the discovery call.
We can discuss applicable past performance after a qualifying call. Many engagements are NDA-protected; we provide details and references on a need-to-know basis after vendor onboarding begins.
Yes. Send the SOW or RFI documentation to [email protected] or use the contact form. We respond within one business day with a fit assessment and proposed approach.
Quote-driven engagement under MSA + SOW today. We are evaluating GSA Schedule paths as part of our federal procurement strategy.
Client owns all custom code, repositories, and documentation produced. Our standard MSA includes work-for-hire language. Open-source dependencies are declared up front.
Synthetic data sets and de-identified production data with safe harbor or expert determination. PHI never enters non-production environments. We document the de-identification methodology as part of the SDLC artifact set.
Yes. We integrate with your Jira/GitHub/Azure DevOps, your code review process, your release cadence, and your security scanning tools.
Section 508 compliance is engineered into the build, not retrofitted. We follow WCAG 2.1 AA as the technical baseline, conduct accessibility audits during development, and produce VPAT/ACR documentation as part of the deliverable package.
Mandatory code review, unit and integration test coverage targets per engagement, security testing (SAST/DAST) where required by the compliance framework, and manual penetration testing via partners on production-bound builds.
Still have questions?
Schedule a 30-minute discovery callStop doing manual work that could be automated. Let's build something custom that actually fits how your business works. AI automation, workflows, LLM systems, whatever you need.
We'll build a system that's secure and scales as you grow. From AI agents to cloud infrastructure, everything adapts as your business expands.