MONTHLY ARCHITECTURE OWNERSHIP

Audited. Diffed. Fixed.

Most architecture audits end at the slide deck. Audit Retainer ends at the merge commit. Monthly review of your stack against its last sound state, with engineering follow-through as the deliverable.

01 / WHAT AUDIT RETAINER DOES

The audit that doesn't end at the read-out

One-off audits find the holes. The retainer fixes them — month after month — and tells you when something new opens up.

A1

Continuous architecture diff

Every month, your stack is compared against its last sound state and against industry baselines. The diff names what changed, what regressed, and what to do about it.

A2

Engineering follow-through

Each finding becomes a ticket with the fix scoped, sized, and (at Scale tier and above) shipped by Garnet engineering. Not "we recommend you address X." Actual PRs.

A3

Compliance + security posture

SOC 2, ISO 27001, GDPR, HIPAA — wherever your stack sits, the audit tracks the gap from where you are to where the audit-ready version of you is.

A4

Cost + performance posture

Monthly cost diff (CF, AWS, Azure, GCP). Latency budget reports against your committed SLOs. Two numbers your CFO and your CTO can both quote.

02 / THE LOOP

Read · Diff · Ship · Brief

One operator running the audit. Engineering hours scoped against the SOW. Briefings your board reads.

01

Read

Your repos, your runbooks, your dashboards. Read-only access first. Lighthouse, security scans, dependency audits, infra graph traversal — all run automatically.

02

Diff

Every finding scored against the last sound state. New issues bubble up; resolved issues retire. The diff is delivered as a structured PDF + a Discord thread.

03

Ship

Scale tier and above: 2-8 engineering tickets shipped per month against the audit findings. PRs from real engineers, reviewed against your style guide.

04

Brief

Monthly executive briefing — 30 minutes, recorded, with C-suite-readable summary. Quarterly board-ready PDF for governance and compliance committees.

03 / PRICING

Three tiers. Recurring. Fixed-fee.

The audit is the platform. Engineering throughput scales with the tier.

Audit Pro
$4,999/mo
For startups under 50 engineers
  • Quarterly architecture audit
  • Monthly diff against last sound state
  • Findings as scoped tickets
  • 1 engineering follow-through ticket / month
  • Discord drift channel
Start Audit Pro
Audit Enterprise
$24,999/mo
For regulated, audited, public-or-pre-IPO
  • Continuous audit · weekly diff
  • Unlimited engineering tickets · throughput-based
  • Dedicated named engineer + technical PM
  • Full compliance program management
  • Quarterly board-ready PDF
  • SOC 2 audit-prep included
  • SLA + named engineering escalation
Talk to engineering →
12+
Compliance frames covered
2-8
Tickets shipped / month at Scale
28%
Cost reduction in 6 months*
100%
Findings tracked to closure

* anonymized aggregate across active Audit Scale subscribers, infra-cost line items only

04 / QUESTIONS

The ones procurement asks

How is this different from a one-off architecture audit?

A one-off audit produces a slide deck. The retainer produces a slide deck AND merged pull requests AND a longitudinal record of how your stack got better, month over month. It also catches new debt the moment it lands, instead of two years later when it's a six-figure refactor.

Do you need access to our codebase?

Read-only access at minimum (deploy keys, GitHub App, or audit user). Write access for the engineering follow-through tickets at Scale and above. Both can be scoped to specific repos and branches; we never touch main without a review from your team.

Who actually does the engineering work?

Garnet engineers, named on your kickoff call. Not contractors, not offshore handoffs. The audit and the engineering are the same team — the people who found the issue write the fix.

Can we start with a one-time audit before subscribing?

Yes — the existing Architecture Audit at /architecture-audit is the entry point. Subscribers get the one-time audit fee credited against the first three months of retainer.

Do you do compliance attestation?

We do compliance posture tracking + audit-prep + remediation. The actual attestation comes from your auditor (SOC 2 firm, ISO body, etc.); we make sure that auditor finds the report you wanted them to find.

What if we need work outside the retainer scope?

Two paths: (a) overflow tickets billed against a Cluster Ops engagement at our hourly rate, or (b) escalation to a fixed-fee build sprint. Both quoted before work starts.

Architecture under continuous watch.

Start Audit Scale for $9,999/mo. First audit landing in your dashboard within 7 days.