Buyer FAQ
Commercial answers without stretching the claims.
The pilot is deliberately bounded: evidence operations, workflow artifacts, and human review trails. Legal interpretation remains with counsel and advisers.
Is this legal advice?
No. DefenceFile organises evidence for legal and compliance review. It does not provide legal advice, create privilege, certify scope, certify reasonable procedures, or guarantee that a statutory defence will succeed.
What does the first working session produce?
The first working session produces five workflow artifacts: a scope posture screen, evidence gap map, associated-person attestation chase list, named review queue, and board-pack blocker list. If any of these are not delivered, the setup fee is waived — see the guarantee FAQ below.
What does the setup-fee guarantee cover?
If the first working session does not produce the agreed workflow artifacts, the setup fee is waived. The guarantee does not provide legal advice, create privilege, certify scope, certify reasonable procedures, or guarantee that a statutory defence will succeed.
What does it cost after the 90-day pilot?
After the 90-day pilot, continuation is month-to-month at GBP 950/month with no annual lock-in, and the founding-cohort monthly rate is held for 12 months from the pilot start. After that, the rate is reviewed at most once a year and any change is capped at UK CPI. Cancel in any month and export your board pack, evidence register, audit trail, and unresolved blocker list.
Why is the price lower than the GRC benchmarks?
The pilot is deliberately priced to clear internal approval without a full procurement cycle — the 90-day scope is narrow by design. A focused ECCTA defence-file engagement is not the same product as a broad enterprise GRC suite. The cost anchors below are context for internal comparison only, not equivalent products.
What if we decide not to continue after the pilot?
No annual lock-in applies at any point. Before the pilot ends, you can export the board-pack workpaper, evidence register, audit trail, and unresolved blocker list — the file is yours regardless of what happens next.
How should we think about data security?
Treat the pilot as a security and procurement review before sensitive evidence is shared. Public trust pages describe the current product posture; signed customer terms and DPA schedules control live commitments.
Review security postureWhy not use our law firm alone?
Use qualified advisers for legal interpretation, privilege, procedure design, and hard judgment calls. DefenceFile is the operating layer around that advice: collection, review state, source lineage, attestations, blockers, and handoff.
Compare advisory-only routeWhy not use a generalist GRC suite?
A broad GRC platform may fit enterprise control programmes. DefenceFile is deliberately narrower: a 90-day ECCTA defence-file pilot focused on scope posture, evidence gaps, associated-person follow-up, human review, and board/adviser handoff.
Compare generalist GRC route