Blog
Client compliance
What GDPR, HIPAA and SOC 2 mean for the apps you build for clients, and how to check yours with Claude
Free, no call
Get all three checklists: GDPR, HIPAA and SOC 2
Each one has the prompt to give Claude, how to read its answer, and the paperwork the code can't do

The GDPR checklist for agencies that build client apps
If your client has users in Europe, GDPR applies to the app you built for them, even from the US. Find every copy of your users' data before your client asks you to delete it
The HIPAA checklist for building apps for clinics
If you build an app for a US clinic, you sign a BAA before you touch patient data, and so does every service your app sends it to, including the ones Claude wired in
The SOC 2 access checklist for agencies
When your client goes for SOC 2, the auditor looks at the app you built and asks who can reach production and who approved it. Check every person, key and AI agent first
Free, no call
Get all three checklists: GDPR, HIPAA and SOC 2
Each one has the prompt to give Claude, how to read its answer, and the paperwork the code can't do
Bring what you have. We’ll tell you where it stands
You’ll leave the call knowing what’s risky and what to do next
- 30 minutes
- Free
- No slides, no sales team