# TrusteeClear — firm diligence pack

Published at https://www.trusteeclear.com/firms/evidence. Everything below is computed from the same records as the public pages; nothing here says more than they do.

## This build

- Source commit: e25b76eeedb9095fed57b9cfd0bf2f1b32b72810
- Built: 2026-09-25T06:21:53.713Z
- Release run: 36102458708 (attempt 1)
- Required checks that verified this commit:
  - CI (verify, end-to-end, Lighthouse gate): run 36100532742 (attempt 1)
  - Row-level security matrix: run 36100532747 (attempt 1)
  - Security scan (secrets, static analysis, dependencies): run 36100532743 (attempt 1)

## Capabilities and their availability on this deployment

| Group | Capability | Availability | AI use |
|---|---|---|---|
| Matter desk and command center | Today desk and matter lifecycle | Available (law-firm tenants) | none |
| Matter desk and command center | Command navigation and matter context | Available (law-firm tenants) | none |
| Matter desk and command center | Matter agents | Available (law-firm tenants) | none |
| Matter desk and command center | Dispute readiness | Available (law-firm tenants) | generative |
| Matter desk and command center | Matter Brain | Available (law-firm tenants) | generative |
| Matter desk and command center | Monday briefing | Available (law-firm tenants) | generative |
| Review, approval and legal authority | Document review recommendations | Available (law-firm tenants) | generative |
| Review, approval and legal authority | Review decisions and finalisation | Available (law-firm tenants) | none |
| Review, approval and legal authority | Trust intelligence | Available (law-firm tenants) | none |
| Review, approval and legal authority | Attorney approval of deliverables | Available (law-firm tenants) | none |
| Review, approval and legal authority | Statute library and statute watch | Available (law-firm tenants) | none |
| Review, approval and legal authority | Florida research | Available (law-firm tenants) | generative |
| Review, approval and legal authority | Action requests and task proof | Available (law-firm tenants) | none |
| Review, approval and legal authority | Attorney workspace (retired) | Retired | generative |
| Review, approval and legal authority | Drafting lanes (retired) | Retired | generative |
| The trustee and beneficiary portal | The trustee desk | Available (website and law firms) | none |
| The trustee and beneficiary portal | Messages between a trustee and the firm | Evidence pending | none |
| The trustee and beneficiary portal | The beneficiary portal | Available (website and law firms) | none |
| The trustee and beneficiary portal | Calendar feed | Available (website and law firms) | none |
| The trustee and beneficiary portal | Hand-off to a law firm | Available (website and law firms) | none |
| The trustee and beneficiary portal | Support and saved drafts | Available (website and law firms) | none |
| Documents, signatures and evidence | Document upload and download | Available (website and law firms) | none |
| Documents, signatures and evidence | Malware scanning and clean promotion | Not enabled on this deployment | none |
| Documents, signatures and evidence | Classification and extraction | Available (website and law firms) | structured |
| Documents, signatures and evidence | Document vault | Available (law-firm tenants) | none |
| Documents, signatures and evidence | Electronic signature | Available (law-firm tenants) | none |
| Documents, signatures and evidence | Signature-provider connection | Not enabled on this deployment | none |
| Documents, signatures and evidence | Trust Receipts and verification | Available (website and law firms) | none |
| Documents, signatures and evidence | Export, retention and deletion | Available (website and law firms) | none |
| Ledger, statements and accounting | The trust ledger | Available (website and law firms) | none |
| Ledger, statements and accounting | Statement import | Available (website and law firms) | structured |
| Ledger, statements and accounting | Bank feeds | Not enabled on this deployment | none |
| Ledger, statements and accounting | Accounting packet | Available (law-firm tenants) | none |
| Deadlines, notices and court forms | The role check | Available (website and law firms) | none |
| Deadlines, notices and court forms | The deadline engine | Available (website and law firms) | none |
| Deadlines, notices and court forms | Statutory notices | Available (website and law firms) | none |
| Deadlines, notices and court forms | The duties packet | Available (website and law firms) | none |
| Deadlines, notices and court forms | Court-form drafts | Available (law-firm tenants) | none |
| Deadlines, notices and court forms | Calendar sync | Not enabled on this deployment | none |
| Integrations and the platform API | Platform API (version 1) | Available (law-firm tenants) | none |
| Integrations and the platform API | Practice-management sync | Not enabled on this deployment | none |
| Integrations and the platform API | Word add-in: citation validator | Available (law-firm tenants) | none |
| Integrations and the platform API | Outlook add-in: email classification | Available (law-firm tenants) | structured |
| Firm administration and billing | Team, roles and capabilities | Available (law-firm tenants) | none |
| Firm administration and billing | Branding and onboarding | Available (law-firm tenants) | none |
| Firm administration and billing | Firm switches and dual authorisation | Available (law-firm tenants) | none |
| Firm administration and billing | Audit log and data requests | Available (law-firm tenants) | none |
| Firm administration and billing | Adding a client | Available (law-firm tenants) | none |
| Firm administration and billing | Billing | Available (law-firm tenants) | none |

## Refusals and limits

- **No lawyer reviews your documents on this website.** Legal review exists only when a law firm provides TrusteeClear to its own client. On the website, the organizers and forms carry no review or approval by anyone. _(Rule: Consumer-lane rule I1)_
- **No AI chats with you or writes to you.** Software may extract dates, names and amounts from a document you upload so you can confirm them. It never converses, answers questions or writes text for you. _(Rule: Consumer-lane rule I2)_
- **No review of your trust and no advice about what it lacks.** The desk can show a difference between two of your own records and the statute it relates to. It never says whether a trust is valid or complete, and never tells you what to fix. _(Rule: Consumer-lane rule I3)_
- **The Duty Coach teaches; it does not direct.** Each lesson names the statute it explains and what the statute provides. No lesson tells you what to do in your situation. _(Rule: Consumer-lane rule I4)_
- **Your decisions stay yours.** No one at TrusteeClear approves, files or sends anything for you. You send your notices and record what you did. _(Rule: Consumer-lane rule I5)_
- **Legal advice comes from a lawyer you choose.** Where a step has legal consequences, the desk names the statute and suggests a licensed Florida attorney of your choosing. _(Rule: Claims register: consult-counsel notices)_
- **TrusteeClear drafts no wills, trusts or attorney letters.** Drafting lives on the sister platforms: EstateDraftFL for estate plans and DraftCounsel for all other attorney drafting. TrusteeClear administers the trust. _(Rule: Claims register: sister-platform drafting pointers)_
- **Nothing is filed or sent on anyone's behalf.** Forms and notices fill their factual blanks from the record; a person edits, sends or files them and records the delivery. The software prepares nothing for anyone and files nothing. _(Rule: Claims register: self-help forms and notices)_
- **No model writes a word or a number into a court form, notice or accounting.** Court forms, statutory notices, packets and fee disclosures are assembled from deterministic templates, and accounting totals are computed from ledger rows. _(Rule: Generative boundary: level L2)_
- **A file opens only after a scanner marks it clean.** An uploaded file waits in quarantine. Until a scan records it clean, it cannot be downloaded, previewed, parsed, sent for signature or treated as clean anywhere in the product. _(Rule: Document scanning policy)_
- **An unread record is reported as unknown, never as empty.** A count that could not be read shows as unavailable instead of zero, and a summary names what it could not read. Only a complete or genuinely empty read can produce an all-clear. _(Rule: Read coverage contract)_
- **Generative AI is reachable only by a law firm's staff.** Model prose is produced only behind a firm-staff session in a law-firm tenant and reaches a client only after an attorney acts on it. Sandbox and demonstration sessions are refused. _(Rule: Consumer-lane rule I2 and the generative gate)_
- **Only an eligible attorney can approve a deliverable.** Approval requires a current Florida credential, an active assignment to the matter, a clear conflict check and a recent second factor, and it binds the exact artifact reviewed. The database refuses anyone else. _(Rule: Claims register: attorney review on firm tenants)_
- **A citation that does not resolve is flagged, never shown as authority.** Research answers draw only on the attested statute library, and retrieval fails closed: a section outside the library renders as an unverified flag. _(Rule: Generative boundary: research engine)_
- **The platform API reads matters and writes nothing.** Version 1 lists a firm's own matters with a machine key. It has no write endpoints, no document content, no beneficiary data and nothing across tenants. _(Rule: Platform API scope)_
- **Model use stops at the monthly spend ceiling.** The model gateway refuses a call once the platform's monthly ceiling is reached, and a failure of the ceiling check refuses the call too. _(Rule: Abuse controls: spend ceiling)_
- **A benchmark result speaks only for the run it records.** Each Tier B result names its date, its commit and its own case count. A historical run implies nothing about the current red-team list, and no newer pass is claimed. _(Rule: FiduciaryBench scorecard)_
- **No certification or assessment is claimed before it exists.** SOC 2 is on the roadmap and no report exists yet. An independent security assessment has been prepared but not performed. _(Rule: Independent assessment record)_
- **Accessibility statements say only what the evidence shows.** The statement and the conformance report describe the evaluated release and methods; neither claims full accessibility or legal compliance. _(Rule: Claims register: accessibility statement)_

## Providers

| Provider | Purpose | Region | Status | On this deployment |
|---|---|---|---|---|
| Supabase | Database, sign-in and private file storage | United States | Always on | Configured |
| Vercel | Hosting, content delivery, server functions and privacy-preserving web analytics | United States | Always on | No configuration needed |
| Anthropic | Model provider for firm-staff generative features and for structured extraction | United States | Always on | Configured |
| Square | Payments: checkout, subscriptions and payment events | United States | Always on | Configured |
| Resend | Outbound transactional email | United States | Always on | Configured |
| ImprovMX | Forwarding of mail sent to TrusteeClear's published addresses | Not stated in TrusteeClear's records; see the provider's published terms | Always on | No configuration needed |
| Plaid | Bank-account connections for ledger feeds | Not stated in TrusteeClear's records; see the provider's published terms | Enabled when connected | Not configured |
| Clio | Practice-management sync for firms that connect it | Not stated in TrusteeClear's records; see the provider's published terms | Enabled when connected | Not configured |
| Google Calendar | Calendar sync for people who connect it | Not stated in TrusteeClear's records; see the provider's published terms | Enabled when connected | Not configured |
| Microsoft calendar (Graph) | Calendar sync for people who connect it | Not stated in TrusteeClear's records; see the provider's published terms | Enabled when connected | Not configured |
| DocuSign | Electronic-signature provider for firms that connect it | Not stated in TrusteeClear's records; see the provider's published terms | Enabled when connected | Not configured |
| Microsoft Office add-in platform | Hosts the Word and Outlook add-ins inside Office | The user's Office host | Enabled when connected | No configuration needed |
| EstateDraftFL (sister platform) | Membership codes issued with an EstateDraftFL purchase | Not stated in TrusteeClear's records; see the provider's published terms | Dormant | Not configured |
| Stripe | Former payment rail, kept dormant | Not stated in TrusteeClear's records; see the provider's published terms | Dormant | Not configured |
| OpenAI | Retained code path for a second model provider | Not stated in TrusteeClear's records; see the provider's published terms | Dormant | Not configured |
| Twilio | Text-message reminders | United States | Dormant | Not configured |
| Postmark | Alternative outbound email sender | United States | Dormant | Not configured |

## Published counts

- Page files: 116; API routes: 142 active of 153, each with an enforced policy row (source tree at this build's commit)
- Scheduled jobs: 7; languages: 7
- Unit test files: 210; SQL suites: 19; end-to-end specs: 14
- Production tables with row-level security: 121 of 121 (observed 2026-09-24)
- FiduciaryBench deterministic cases: 92; last recorded model-in-the-loop run (historical): 12 of 12 on 2026-08-10 at 43a9217; the current red-team list has 10 scenarios and no run of it is recorded
- WCAG 2.2 criteria evaluated: 55 (conformance report dated 2026-09-18)

## Evidence index

| Evidence | Where | As of | Review |
|---|---|---|---|
| Security | https://www.trusteeclear.com/security | 2026-09-24 | — |
| Providers and data flows | https://www.trusteeclear.com/security/providers | 2026-09-24 | — |
| Capability reference | https://www.trusteeclear.com/firms/platform | 2026-09-24 | — |
| Trust Receipt verification | https://www.trusteeclear.com/verify | 2026-09-24 | — |
| FiduciaryBench | https://www.trusteeclear.com/fiduciarybench | 2026-08-10 | — |
| Accessibility statement | https://www.trusteeclear.com/accessibility | 2026-09-18 | current (next 2026-11-16) |
| Accessibility conformance report | https://www.trusteeclear.com/accessibility/conformance-report | 2026-09-18 | current (next 2026-11-16) |
| Statute coverage | https://www.trusteeclear.com/florida-trust-code-map | 2026-09-24 | — |
| Data processing addendum | https://www.trusteeclear.com/legal/dpa | 2026-09-24 | — |

## Not yet claimed

- An independent security assessment has been scoped and its evidence pack prepared; it has not been performed.
- SOC 2: no report exists yet.
- A managed-backup restore drill into an isolated target has not yet been run; the restore procedure is rehearsed automatically on every change.
