Compliance

Registration, security posture, and how we handle controlled data.

The checklist a contracting officer runs before a source-selection decision. Items in progress are marked honestly; we do not claim status we do not hold.

Federal registration & status

  • SAM.gov registration Active
  • Unique Entity ID (UEI) FU42WX16QWS5
  • CAGE code 22TD5
  • SBA Company Registry (SBC) SBC_002679995
  • Small Business status Yes
  • US citizen-owned Yes (100%)
  • Foreign ownership, control, or influence (FOCI) None

Verify independently: SBA Small Business Search profile.

Security posture

CMMC
CMMC Level 1 self-assessment in progress; Level 2 planned before any CUI work
Cloud / data boundary
Google Workspace; FedRAMP-authorized enclave planned before handling CUI
Citizenship
100% US citizen-owned and operated
Facility clearance
No facility clearance at this time

Quality & data handling

  • CUI will be handled in a dedicated FedRAMP-authorized enclave, provisioned before any CUI work; no controlled data in commercial tenants.
  • The 15 FAR 52.204-21 basic safeguarding requirements are tracked to a documented CMMC Level 1 self-assessment, with NIST SP 800-171 mapped against a Level 2 plan.
  • Source control, code review, and CI/CD on every change; no direct-to-production edits.
  • Least-privilege access, MFA on all accounts, and audit logging from day one.
  • IP ownership retained in-house, supporting Phase III sole-source and IDIQ data-rights positions.

Section 508 / accessibility

This site is built to WCAG 2.1 AA: semantic structure, keyboard operability, visible focus, labeled controls, and AA color contrast. Accessibility is treated as a delivery requirement, not an afterthought.

Need this on paper?

The 1-page capability statement carries the identifiers, NAICS, and posture summary in standard GovCon format.