EDGAR filer codes
EDGAR filer codes, including the CCC, are encrypted with AES-256-GCM before storage. They are never stored in plaintext.
Security and trust
TakePublic handles draft SEC filings, books data, and EDGAR filer codes. Draft filings can contain material nonpublic information, so security is designed into the filing workflow, not added around it.
Data protection
All traffic uses TLS. Sensitive filing credentials and connected-account tokens receive an additional control before storage.
EDGAR filer codes, including the CCC, are encrypted with AES-256-GCM before storage. They are never stored in plaintext.
Integration OAuth tokens use the same encryption before storage. The 256-bit key is KMS-backed in production, and the system fails closed if the key is missing.
Evidence
Every filing transition, sign-off, content edit, integration sync, and admin action writes an audit event.
Submission control
No filing reaches EDGAR submission without your securities attorney's sign-off that matches the exact document hash.
A content edit changes the document hash. The prior sign-off no longer matches, so the filing must be reviewed and signed again.
Sign-off, content edits, and submission run transactionally with row locks, keeping the signed version and submitted version aligned.
Least privilege
Role-based access limits counsel and auditor seats to what their work requires. Draft filings are treated as MNPI, and access-relevant actions are recorded in the audit trail.
TOTP multi-factor authentication is required in production for counsel and platform admin roles. It is available to every role.
User-supplied and AI-generated HTML is sanitized on the server and again in the client before rendering.
Model boundaries
Customer books and filings are not used to train AI models. Anthropic serves the drafting model.
If an accounting, email, SMS, or EDGAR connection is misconfigured, the affected action stops instead of proceeding. No silent fallbacks.
Connected systems
These services connect to TakePublic or process data for the stated purpose.
QuickBooks Online OAuth sync.
Subscription billing.
Transactional email.
SMS notifications.
Production authentication.
AI drafting model.
Current posture
TakePublic is on the SOC 2 track, and preparation is underway. Certification has not been completed. The controls described on this page are the controls implemented in the product today.
Diligence questions
EDGAR filer codes, including the CCC, are encrypted with AES-256-GCM before storage and are never stored in plaintext. In production, the 256-bit encryption key is backed by KMS. If the key is missing, the system fails closed instead of continuing with unprotected secrets.
No. A filing cannot reach EDGAR submission without sign-off from your securities attorney that matches the exact document hash. Sign-off, content edits, and submission run transactionally with row locks. If the document changes, the signed hash no longer matches and the gate blocks submission.
No. Customer books and filings are not used to train AI models. Anthropic serves the drafting model. TakePublic treats draft filings as material nonpublic information, limits access by role, and records access-relevant actions in the append-only, hash-chained audit trail for a verifiable record.
TakePublic is on the SOC 2 track, with preparation underway. TakePublic has not completed certification, and this page does not represent otherwise. Current product controls include TLS, encrypted secrets, role-based access, multi-factor authentication, a counsel sign-off gate, HTML sanitization, and an append-only, hash-chained audit trail.
Go deeper
The operational detail behind this page: data protection, the audit trail, and multi-factor authentication.
The privacy policy explains how TakePublic handles personal information. The full help collection covers every security control in operational detail.
Privacy policy All security helpTakePublic is a technology platform, not a law firm, broker-dealer, or auditor. Nothing files without review and sign-off by a licensed securities attorney.