Retention, an append-only audit trail, an organisation-held key escrow and server-enforced consent gates all ship as part of push.tt rather than as a tier you upgrade into. What we do not have is listed just as plainly, because a compliance page that only lists strengths is not one a procurement team can use.
Each of these is enforced by the server, not by the app being polite about it.
No certifications, stated without hedging. If any of these is a hard requirement, we are not a fit today and it costs you nothing to find that out now.
Some of these are achievable and some are a serious investment. If one is blocking a deal, tell us which — it is a far more useful conversation than a questionnaire, and the honest answer to "when" depends entirely on which one you mean.
This is where push.tt differs from every other product in the category, and it cuts both ways. Being clear about it matters more than making it sound good.
Concrete facts a data-protection assessment needs, rather than a reassurance.
We will answer it, and we will answer "no" where the answer is no. Things that usually come up early, so you can rule us in or out fast:
Name the standard you are held to and the control that worries you. We will tell you whether it exists, whether it is planned, or whether it is genuinely out of reach for us right now — which is the answer most often missing from this kind of page.