Your processes are your business. We treat them that way.

A plain-language account of how SOPCompass keeps your SOPs private, what we use to run it, and what we do not claim.

Row-level security per workspace

SOP content is stored in Supabase Postgres. Access rules are written as row-level security policies in the database itself, so each query only returns rows from workspaces the signed-in person belongs to. The interface hiding a button is never the only protection.

Roles that decide what people can change

Owners, admins, editors and viewers each have clear permissions, enforced by the same database policies. A library shared into another workspace is read-only there and can only be edited from its home workspace. A workspace cannot lose its last owner.

Private AI interviews

An AI interview is visible only to the person who started it. Admins and teammates cannot read someone else’s interview. What becomes shared is the SOP they choose to save.

Share links that expire and can be revoked

Public share links open one SOP, read-only, through a single database function. Links can expire after 7 or 30 days and can be revoked at any time, after which they stop working. An invalid link returns nothing.

Version history

Earlier versions of an SOP are kept, so accidental deletions and unwanted edits, including approved AI edits, can be restored.

Audio transcribed on your machine

When you import an audio recording, speech is transcribed in your browser. The audio file itself is not uploaded to draft the SOP; only the text transcript is used.

Billing never touches our servers

Subscriptions are purchased on Whop’s secure checkout. Your card number is entered with Whop and never passes through or is stored by SOPCompass.

How AI features handle your content

AI features send the content needed for a request, such as your interview answers, a document you import or the SOPs relevant to a question, to Anthropic’s API to generate a response. SOPCompass does not use your content to train AI models. Ask retrieves SOPs as the person asking, so answers only draw on what that person is allowed to see.

Services we use to run SOPCompass

  • SupabaseDatabase, authentication and file storage
  • AnthropicAI features (Claude) via Anthropic’s API
  • ElevenLabsVoice mode for AI interviews
  • WhopCheckout, subscriptions and billing
  • VercelHosting for the application
  • SlackOnly when you choose to send an SOP to Slack

What we do not claim

SOPCompass is not currently SOC 2 audited or certified, is not HIPAA compliant, and does not hold a GDPR certification. We do not offer an uptime SLA. Please do not store protected health information, payment card data or similar regulated data in SOPs.

If your organization needs a security questionnaire answered or has specific requirements, email jordan@solender.ai and we will give you straight answers.

Found a vulnerability? Please report it privately to jordan@solender.ai.

Point every process the same way

Try SOPCompass free for 14 days. Interview the AI, import what you have and see your workspace come together.