{
  "$schema": "https://fedramp.gov/schemas/fedramp-certification-package-overview-schema-2026-06-24.json",
  "serviceIdentification": {
    "providerName": "Specset",
    "serviceName": "Specset Cloud Platform",
    "serviceAcronym": "SCP",
    "serviceDescription": "The Specset Cloud Platform is an AI platform for construction document review. It automates technical review across project manuals, drawing sheets and shop drawings: submittal review against project specifications, UFGS (Unified Facilities Guide Specifications) compliance checking, design review automation, asset management logic, and search and question answering across a project's documents. The platform flags potential issues and returns cited answers drawn from the customer's own project documents. Specset is the trade name of Spot.xyz Corporation, formerly Specbook. The SOC 2 Type II report supporting this package is issued to Spot.xyz Corporation DBA Specset, and the Unique Entity Identifier above is registered to that entity. FedRAMP ID FR2631258135 is the sole active Marketplace listing for this offering; a duplicate listing created at intake, FR2631747321, is pending retirement, requested 2026-08-31.",
    "certificationType": "20x",
    "fedRampPackageId": "FR2631258135",
    "website": "https://specset.com",
    "logo": "https://specset.com/fedramp/specset-logo.png",
    "ueiNumber": "S7RZBSZXNBD5"
  },
  "serviceProperties": {
    "serviceType": [
      "SaaS"
    ],
    "deploymentModel": "Public Cloud",
    "businessCategory": [
      "Artificial Intelligence (AI)",
      "Construction"
    ],
    "trustCenter": {
      "repositoryType": [
        "Trust Center",
        "Certification Package",
        "Policies and Procedures",
        "Assessment Reports"
      ],
      "url": "https://trust.specset.com",
      "repositoryDescription": "Specset Trust Center, the single repository for FedRAMP Certification Data for the Specset Cloud Platform. The landing page, compliance posture summary, subprocessor list and FedRAMP milestone information are public. The SOC 2 Type II report is published there as a restricted resource today. The remaining Class A certification data — the Security Decision Record, the example Ongoing Certification Report, the information-resources inventory with its generator and sources, the Incident Response Procedure, the Vulnerability Management Procedure, the security policies maintained in Vanta, and twelve supporting-evidence documents, one per artifact the Security Decision Record cites — is supplied with the Class A application and published here as restricted resources when that application is filed. The Security Decision Record, the example Ongoing Certification Report and the inventory are published in both machine-readable and human-readable form. Gap: only the SOC 2 Type II report is open to access requests today. Plan: publish the rest as restricted resources, byte-identical to the filed package, when the Class A application is filed.",
      "authenticationRequired": true,
      "accessRequestInstructions": "The landing page at https://trust.specset.com requires no login. FedRAMP staff and agency reviewers request access to the restricted FedRAMP Certification Data from the Trust Center page. Specset approves requests manually and does not require acceptance of terms or a non-disclosure agreement. If a request is not approved within one business day, email fedramp@specset.com."
    },
    "additionalRepositories": [
      {
        "repositoryType": [
          "Public Information"
        ],
        "url": "https://github.com/specsetai/fedramp-marketplace",
        "repositoryDescription": "Source repository for this public FedRAMP information (fedramp.json and the generated human-readable page) with full change history.",
        "authenticationRequired": false
      }
    ],
    "nextOngoingCertificationReportDate": "2026-12-01"
  },
  "contactInformation": [
    {
      "contactType": "Sales",
      "contactEmail": "sales@specset.com"
    },
    {
      "contactType": "Security",
      "contactName": "FedRAMP Security Inbox",
      "contactEmail": "fedramp@specset.com"
    }
  ],
  "certifiedServices": [
    {
      "serviceName": "Specset Cloud Platform",
      "serviceDescription": "The Specset Cloud Platform is a single multi-tenant SaaS service for construction document intelligence. Security category: Moderate (FIPS 199), reflecting the Controlled Unclassified Information the service handles for defense and federal customers. The platform is offered as a single service, and no component of it carries a different security category. It ingests customer project documents (project manuals and specifications, drawing sheets, shop drawings and submittals) and provides automated submittal review against project specifications, UFGS and specification compliance checking, design review automation, document search and question answering across a project's documents, and asset management logic. Customers use the service through a web application. Optional customer-initiated integrations connect to the customer's own Procore or Autodesk tenants. Production runs on Google Cloud Platform in project specset-prod-assured (Assured Workloads, FEDRAMP_MODERATE control package, us-west1), with supporting services on Amazon Web Services and Microsoft Azure as listed under third-party information resources. A per-organization CUI mode restricts model, embedding and web-grounding calls to the Assured Workloads project (Vertex AI, location us), disables the commercial AI and support-chat integrations and the customer-initiated Procore and Autodesk integrations, and never calls Perplexity. Federal tenants are provisioned with CUI mode enabled.",
      "dateAvailable": "2025-01-22"
    }
  ],
  "thirdPartyInformationResources": {
    "certified": [
      {
        "fedRampCertifiedThirdPartyInformationResource": "FR1805751477",
        "useCase": "Google Cloud Platform (Google Services) — primary hosting of all production infrastructure in project specset-prod-assured (Assured Workloads): GKE Autopilot, Cloud SQL, Cloud Storage, Memorystore, Cloud KMS, Cloud Load Balancing and Cloud Armor, Cloud Logging and Monitoring, Secret Manager, Artifact Registry, and Vertex AI (Gemini) model inference, embeddings and Web Grounding for Enterprise. Organizations in CUI mode use Vertex AI in the Assured Workloads project at location us only; other organizations use Vertex AI in a peer Google Cloud project, specbook-production, outside Assured Workloads. Stores and processes customer data. A third Google Cloud project, specbook-development, holds the development user-content buckets, development service identity and development vendor-key secrets; it sits outside Assured Workloads and inside the assessment scope because it shares integration credentials and software delivery with production. A founder-run project-clone tool can copy a production project's documents into that development environment for debugging, so development stores may hold customer content. Two further Google Cloud projects are inside the assessment scope and hold no customer content: specset-dataroom, an investor data room with no connection to the offering, and vanta-scanner, which holds the compliance scanner's federated identity and read-only custom roles outside the boundary project. Gap: the clone tool does not yet exclude the projects of organizations in CUI mode. Plan: block cloning of CUI-mode organizations in the tool and record the rule in the production-access procedure before the 2026-12-01 Ongoing Certification Report."
      },
      {
        "fedRampCertifiedThirdPartyInformationResource": "AGENCYAMAZONEW",
        "useCase": "AWS US East/West — supporting services: Amazon SES (transactional email), Route 53 (DNS), S3 (CI build cache, CloudTrail audit logs, and a legacy database-backup bucket from the pre-2026 hosting platform), GuardDuty (threat detection), and Amazon Bedrock (Claude model inference in us-west-2, for organizations not in CUI mode; prompts may include customer document text)."
      },
      {
        "fedRampCertifiedThirdPartyInformationResource": "F1209051525",
        "useCase": "Azure Commercial Cloud — Azure OpenAI (GPT model inference for organizations not in CUI mode; prompts may include customer document text) and Microsoft Entra ID application registrations for customer 'Sign in with Microsoft' single sign-on. No customer data is stored on Azure."
      },
      {
        "fedRampCertifiedThirdPartyInformationResource": "F1206081364",
        "useCase": "Google Workspace — provider identity (Cloud Identity) for staff access to production through Identity-Aware Proxy, with security-key or passkey 2-Step Verification enforced for all staff; staff email including the FedRAMP Security Inbox. No customer data."
      },
      {
        "fedRampCertifiedThirdPartyInformationResource": "FR1812058188",
        "useCase": "GitHub Enterprise Cloud — source control and CI/CD for the application and infrastructure-as-code. Dependabot security alerts and CodeQL code scanning run on the application and infrastructure repositories, with Dependabot version updates on the infrastructure repository. Deploys to production through OpenID Connect workload identity federation. No customer data."
      },
      {
        "fedRampCertifiedThirdPartyInformationResource": "FR2525556241",
        "useCase": "Vanta Trust Management Platform — continuous configuration monitoring of the production cloud accounts (read-only metadata), compliance evidence and policies, and the Specset Trust Center at trust.specset.com. No customer data."
      },
      {
        "fedRampCertifiedThirdPartyInformationResource": "FR1823447014",
        "useCase": "Slack — operational alerting and change-notification channel for the provider (infrastructure change notifications, security alerts). Resource metadata only; no customer data."
      },
      {
        "fedRampCertifiedThirdPartyInformationResource": "FR2604643715",
        "useCase": "Perplexity Enterprise and API Platform (FedRAMP Certified, Class B) — web search for AI features of organizations not in CUI mode. Receives model-generated search queries; customer documents are not sent. Never called for organizations in CUI mode: their web lookups run on Vertex AI Web Grounding for Enterprise inside the Google Cloud Assured Workloads project."
      }
    ],
    "nonCertified": [
      {
        "name": "Anthropic API (Claude, direct)",
        "provider": "Anthropic, PBC",
        "useCase": "Direct Claude model inference for a small set of models not served through Amazon Bedrock, selectable only by Specset administrators; prompts may include customer document text. Never enabled for organizations in CUI mode.",
        "website": "https://www.anthropic.com"
      },
      {
        "name": "Intercom",
        "provider": "Intercom, Inc.",
        "useCase": "In-app customer support chat for organizations not in CUI mode. Processes customer user contact details and support conversation content; no project documents. The messenger never loads for an organization in CUI mode and its memberships are never shared with Intercom.",
        "website": "https://www.intercom.com"
      },
      {
        "name": "Google Generative AI (AI Studio)",
        "provider": "Google LLC",
        "useCase": "Gemini API path outside the Google Cloud FedRAMP boundary, used as the embedding provider for organizations not in CUI mode; prompts may include customer document text. Never used for organizations in CUI mode, whose embeddings run on Vertex AI in the Assured Workloads project. Retirement is planned before the Class C application.",
        "website": "https://aistudio.google.com"
      },
      {
        "name": "Cloudflare Workers AI",
        "provider": "Cloudflare, Inc.",
        "useCase": "Cloudflare AI Gateway and Workers AI for experimental open-model inference selectable by organizations not in CUI mode. Prompts may include customer document text, and inference runs in Cloudflare data centers worldwide. The gateway does not store prompt or completion payloads, and the per-organization CUI mode excludes it. Cloudflare also supplies the edge fronting for the Trust Center custom hostname (trust.specset.com) as part of Vanta's Trust Center service; that use carries no customer data. The Cloudflare for Government offering is not used.",
        "website": "https://www.cloudflare.com"
      },
      {
        "name": "NOAA / National Weather Service APIs",
        "provider": "US National Oceanic and Atmospheric Administration (federal agency)",
        "useCase": "Public weather and tide data for project daily logs. Receives a project site's latitude and longitude only; forecasts and tide data are returned to the daily log. Nothing is stored at the service. A US federal government data service, not a cloud service offering.",
        "website": "https://www.weather.gov"
      },
      {
        "name": "Apryse",
        "provider": "Apryse Software Inc. (formerly PDFTron Systems Inc.)",
        "useCase": "Document-processing software from one vendor, used two ways, both inside the boundary or in the user's browser. The server-side PDF library runs in the application and worker pods on customer documents, and the structured-output module it needs is downloaded from the vendor at container image build and pinned by SHA-256 checksum. The browser viewer runs under an offline OEM license key, so viewing makes no call to the vendor. No customer document data is sent to the vendor; the resource is in scope as a software-supply-chain dependency that affects document-processing availability and build integrity.",
        "website": "https://apryse.com"
      },
      {
        "name": "Autodesk Platform Services",
        "provider": "Autodesk, Inc.",
        "useCase": "Optional customer-initiated integration to the customer's own Autodesk tenant through OAuth; the customer chooses and authorizes the data exchanged. Disabled for organizations in CUI mode. Not used unless a customer connects it. Gap: the application gate that stops an organization in CUI mode from connecting the integration, and makes an existing connection inert, is written and reviewed but not yet deployed, so CUI mode does not disable this integration today. Plan: deploy the gate before the paid federal pilot.",
        "website": "https://aps.autodesk.com"
      },
      {
        "name": "Procore",
        "provider": "Procore Technologies, Inc.",
        "useCase": "Optional customer-initiated integration to the customer's own Procore tenant through OAuth; the customer chooses and authorizes the data exchanged. Disabled for organizations in CUI mode. Not used unless a customer connects it. Gap: the application gate that stops an organization in CUI mode from connecting the integration, and makes an existing connection inert, is written and reviewed but not yet deployed, so CUI mode does not disable this integration today. Plan: deploy the gate before the paid federal pilot.",
        "website": "https://www.procore.com"
      },
      {
        "name": "Claude Code (Anthropic) — engineering assistant",
        "provider": "Anthropic, PBC",
        "useCase": "Coding assistant used by the founders on operator laptops. It is in the assessment scope because what it reads can include federal customer data: production configuration, cluster state, metadata and application logs read as a dedicated read-only service account, and database rows read through a time-limited tunnel that a founder approves each session. What it reads is sent to the model provider. The service account holds reader roles only and has no write permission on production. Database reads use Cloud SQL IAM authentication with SELECT-only grants. Every tunnel start is recorded as an Admin Activity audit entry, and an alert fires if the account ever appears as the principal of a write. Gap: rows of organizations in CUI mode are not yet excluded from that read-only database role. Plan: enforce the exclusion with row-level security before the 2026-12-01 Ongoing Certification Report.",
        "website": "https://www.anthropic.com"
      },
      {
        "name": "OpenAI Codex — engineering assistant",
        "provider": "OpenAI",
        "useCase": "Coding assistant used by the founders on operator laptops. It is in the assessment scope under the same production-access protocol as Claude Code. It reads as the dedicated read-only service account with no write permission on production, and reads database rows only through the founder-approved, SELECT-only, time-limited tunnel. Every tunnel start is recorded as an Admin Activity audit entry, and an alert fires on any write. What it reads is sent to the model provider. The same planned exclusion of CUI-mode rows applies.",
        "website": "https://openai.com/codex"
      },
      {
        "name": "Firecrawl",
        "provider": "Mendable Labs, Inc.",
        "useCase": "Two dependencies on one vendor. The hosted scraper reads public bid-portal pages for specification research and receives the page URL together with the extraction instructions the assistant's model wrote, which may derive from a user's conversation; no document, embedding or database row is sent. The vendor's PDF parser is a pinned software dependency that runs inside the boundary on customer PDFs, so no customer document reaches the vendor through it. Gap: the scrape tool is not gated on CUI mode, so an organization in CUI mode can reach this non-certified vendor. Plan: apply the integration CUI gate to the tool and its workflow activity before the 2026-12-01 Ongoing Certification Report.",
        "website": "https://www.firecrawl.dev"
      },
      {
        "name": "CARTO basemaps",
        "provider": "CARTO, Inc.",
        "useCase": "Browser-side raster map tiles for one dashboard panel, the closeout facility map. The vendor receives the visitor's IP address and the requested tile coordinates, which disclose the approximate location of a project facility; no project name, address, identifier or document is sent, and no server-side path to the vendor exists. Gap: those tile requests are not gated on CUI mode. Plan: self-host the tiles and remove the egress before the 2026-12-01 Ongoing Certification Report.",
        "website": "https://carto.com"
      },
      {
        "name": "Customer single sign-on identity providers (Google Sign-In and customer-configured OpenID Connect providers)",
        "provider": "The customer's own identity provider (Google Sign-In, or any OpenID Connect provider a customer configures)",
        "useCase": "Customer-chosen authentication for customer users. Specset receives the identity assertion and the claims the customer's provider releases; no project document or row leaves the boundary. Each provider is the customer's own information resource under the customer's own administration, so its certification status is the customer's decision. Corporate Google single sign-on is enforced for Specset staff and superadmin access.",
        "website": "https://openid.net/developers/how-connect-works/"
      }
    ]
  },
  "metadata": {
    "accountableOfficial": {
      "name": "Gordon Hempton",
      "title": "CEO and Co-Founder",
      "email": "gordon@specset.com"
    },
    "version": "2026.09.14",
    "lastUpdated": "2026-09-14T04:30:00Z",
    "updateSource": "github.com/specsetai/fedramp-marketplace (main branch; schema-validated by the repository's validate workflow; published to specset.com/fedramp/)"
  },
  "documentation": [
    {
      "name": "Security Decision Record (SDR)",
      "type": "JSON + Markdown (FedRAMP 2026-06-24 schema)",
      "summary": "Per-rule and per-KSI implementation, validation and assessment statements for the Class A package, with SOC 2 Type II control mappings and a gap statement for each partially implemented rule.",
      "availability": "Supplied with the Class A application; published as a restricted trust-center resource, no NDA, when that application is filed"
    },
    {
      "name": "Ongoing Certification Report (OCR) — example",
      "type": "JSON + Markdown (FedRAMP 2026-06-24 schema)",
      "summary": "Schema-conformant example of the quarterly report of certification-data changes, planned changes, accepted vulnerabilities, agencies and reportable incidents, labeled as an example. The first report is due 2026-12-01.",
      "availability": "Supplied with the Class A application; published as a restricted trust-center resource, no NDA, when that application is filed"
    },
    {
      "name": "Information-resources inventory (MAS-CSO-IIR)",
      "type": "JSON + Markdown (generated), with generator, sources and derivation method",
      "summary": "Every cloud account, project and third-party service that handles federal customer data or can affect its confidentiality, integrity or availability, with location, boundary membership, encryption and CUI routing.",
      "availability": "Supplied with the Class A application; published as a restricted trust-center resource, no NDA, when that application is filed"
    },
    {
      "name": "SOC 2 Type II report",
      "type": "PDF (restricted use)",
      "summary": "Prescient Assurance LLC, issued 2026-08-31, Security Trust Services Criteria, period 2026-04-15 to 2026-07-15, unqualified opinion, no exceptions on 131 tested controls. This is the approved alternative security framework assessment that Class A rests on (FRC-CLA-ASF). Independent verification and validation of the certification package by a FedRAMP Recognized independent assessment service is optional at Class A (FRC-CLA-IVV), and none is engaged for this submission. An independent assessor is engaged for the Class C assessment that follows. The management representation letter accompanying the report is retained in the evidence repository and supplied with the application and on request to fedramp@specset.com.",
      "availability": "Trust center (trust.specset.com), restricted resource, view only, no NDA — published today"
    },
    {
      "name": "SOC 2 Type II engagement documentation",
      "type": "PDF (restricted use)",
      "summary": "Verified engagement documentation for the completed examination, dated 2026-08-25. The next report is planned after the 2026-07-16 to 2027-07-15 period ends and before 2027-08-31. The renewal engagement letter for that period is signed by the assessor; the client signature is pending. Gap: no assessor bridge or gap letter covers 2026-07-16 to the application date. Plan: settle the bridge-letter position with the assessor before the application is filed, and supply the letter with the assessment materials if one is issued.",
      "availability": "Retained in the evidence repository; supplied with the Class A application and on request to fedramp@specset.com"
    },
    {
      "name": "Incident Response Procedure",
      "type": "Markdown / PDF",
      "summary": "Detection, triage, FedRAMP reportability evaluation, initial and final incident reporting (IEC-CSO-EFR / IIR / OIR / FIR), and the FedRAMP Security Inbox procedure.",
      "availability": "Supplied with the Class A application; published as a restricted trust-center resource, no NDA, when that application is filed"
    },
    {
      "name": "Vulnerability Management Procedure",
      "type": "Markdown / PDF",
      "summary": "Persistent detection (Dependabot security alerts and CodeQL code scanning on the application and infrastructure repositories, Artifact Registry image scanning of deployed digests), PAIN-based evaluation within 14 days, Class A remediation timeframes, and adoption of the VDR / VER rulesets ahead of the 2026-12-07 mandate.",
      "availability": "Supplied with the Class A application; published as a restricted trust-center resource, no NDA, when that application is filed"
    },
    {
      "name": "Security policies",
      "type": "PDF / web",
      "summary": "The policy set maintained in Vanta, with employee acceptance recorded there: information security, access control, data management, cryptography, operations security (which carries the change management requirements), acceptable use, password, mobile device, data leakage prevention and third-party management policies, plus the incident response plan and the business continuity and disaster recovery plan. Gap: the revised business continuity and disaster recovery plan that aligns the recovery time objective with the recovery plan is pending approval, and the approved version still records the earlier objective. Plan: approve the revision by 2026-11-30, before the 2026-12-01 Ongoing Certification Report.",
      "availability": "Supplied with the Class A application; published as a restricted trust-center resource, no NDA, when that application is filed"
    },
    {
      "name": "Vulnerability activity reports",
      "type": "Markdown + JSON, monthly",
      "summary": "Monthly vulnerability detection and response activity (VER-TFR-MRH). First report 2026-10-01.",
      "availability": "Published as a restricted trust-center resource, no NDA, from 2026-10-01"
    },
    {
      "name": "Recovery plan",
      "type": "Markdown / PDF",
      "summary": "The recovery plan for the offering (KSI-RPL-ARP): service recovery objectives of RTO 24 elapsed hours and RPO 15 minutes (KSI-RPL-RRO), per-datastore backup and recovery procedures aligned to those objectives (KSI-RPL-ABO), and the recovery testing cadence (KSI-RPL-TRC). Delivered as supporting-evidence document 12, \"Recovery and Backup Configuration\".",
      "availability": "Supplied with the Class A application; published as a restricted trust-center resource, no NDA, when that application is filed"
    },
    {
      "name": "Training effectiveness review (KSI-CED-RAT)",
      "type": "JSON",
      "summary": "Four-category review of security training effectiveness for all staff, completed 2026-09-12, with follow-up actions. Next review 2026-12-01.",
      "availability": "Supplied with the Class A application; published as a restricted trust-center resource, no NDA, when that application is filed"
    },
    {
      "name": "Incident register and simulated Final Incident Report",
      "type": "Markdown + JSON (FedRAMP incident report schema)",
      "summary": "Incident register entries, the quarterly review record, and a simulated tabletop exercise with its reportability evaluation and schema-valid Final Incident Report.",
      "availability": "Supplied with the Class A application; published as a restricted trust-center resource, no NDA, when that application is filed"
    },
    {
      "name": "Class A supporting evidence documents",
      "type": "Twelve PDFs, each with its source exports as appendices",
      "summary": "Twelve documents, one per artifact the Security Decision Record cites by name, so a reviewer opens exactly what the record points to: change management record; network boundary and Cloud Armor configuration; egress enforcement verification; identity and access configuration; staff authentication verification; training effectiveness review; incident response records; encryption and secrets configuration; vulnerability detection baseline and exception EX-2026-001; information resources inventory sources; assessment materials and schedule; and recovery and backup configuration. Each states the facts, the rule identifiers it evidences and its source records, with the machine-readable export appended.",
      "availability": "Supplied with the Class A application; published as a restricted trust-center resource, no NDA, when that application is filed"
    },
    {
      "name": "Service availability (CDS-CSO-AVR)",
      "type": "Web page + JSON",
      "summary": "Current status, 90-day per-service history and incidents, hosted independently of the offering; machine-readable at https://status.specset.com/index.json.",
      "availability": "Public: https://status.specset.com"
    },
    {
      "name": "Secure configuration guidance",
      "type": "Web page",
      "summary": "Customer-side configuration guidance (single sign-on, roles, CUI mode). The Secure Configuration Guide rules (SCG-CSO) apply to Classes B, C and D, not to Class A, so no guide is required for this application. Gap: not yet published. Plan: publish it on the Trust Center and link it from serviceProperties.secureConfigurationGuidance in this document before the Class C application.",
      "availability": "Not yet published"
    }
  ]
}
