π Integrations (MVP)¶
Core Integrations¶
1. Kinde Auth¶
What: User authentication and access control Why: Secure login, role management, multi-tenant support MVP Scope: Basic SSO, email/password login, role assignment
2. Email (SendGrid/Postmark)¶
What: Standard notifications and reports Why: Primary communication channel MVP Scope:
- Task assignments and notifications
- Urgent compliance alerts
- Approval requests
- Policy acknowledgments
- Weekly summaries
- Board report delivery
3. n8n Workflows¶
What: Basic automation platform Why: Automate routine tasks without coding MVP Scope:
- Scheduled compliance checks
- Notification routing
- Simple workflow automation
Future Integrations (Post-MVP)¶
After validating core product:
- WhatsApp (via Twilio) - Mobile notifications and conversational interface
- Microsoft 365 (policy storage)
- Slack (team notifications)
- Security tool APIs (evidence collection)
- ACSC threat feeds
Integration Principles¶
- Start Simple: Email covers critical notification needs for MVP
- User-Driven: Add integrations customers actually request
- Reliability First: Better to do few integrations well
- Security: All integrations follow zero-trust principles
For MVP, we focus on authentication, email notifications, and basic automation.