Hacker News new | past | comments | ask | show | jobs | submit login

This looks neat, will keep an eye on this! Good luck with the Google Security Assessment. The first one takes quite a bit of time to cover all the bases, but the future ones are much easier once familiar with the process.



Thanks! Yeah for now we're waiting to get more paying customers and then we'll pay for the security assessment ourselves (or get an Angel investor), probably in January.

But 20k is a steep price :/ especially for a bootstrapped company like us.

Some might say Google is trying to prevent small companies to innovate upon Gmail...


Out of curiosity, where'd you get the $20k estimate? Their docs [1] give a $15-75k range, but I haven't contacted either of the two companies actually authorized to do the audits yet and details about the process are a bit scarce.

Either way - it's a huge chunk of change. Would be happier if it were on the lower end of that price range for sure.

1 - https://support.google.com/cloud/answer/9110914?hl=en#Securi...


We've asked the security companies what we should expect as a rather small internet company and they came back to us with this number :)


Gotcha, thanks!


It's tough. I see where they're coming from not wanting people to access people's emails without being properly vetted. At least it's an additional "badge" you can display on the security side of things.

Don't forget to budget in the fact that it's annual...


Yeah! We saw that! But as you said, we're looking forward to it as a way to bullet-proof our security.

It's a valid concern and getting vetted by a security company will be a huge plus!

Especially given the privacy concerns raised by other comments.

Just to clarify for readers, to use our note taking app, you only need to sync your calendar. Syncing gmail is only requires to use our paying personal CRM app as we use this data to find out who you're losing touch with (but we only access metadata, we can't read your emails).


> Yeah for now we're waiting to get more paying customers

Don't "wait". Do something about it.

P.S. Hate "waiting" mindset


Haha sorry, used the wrong word. We're of course pro-actively acquiring new users. What I meant is that we're not pressured by time or so.




Join us for AI Startup School this June 16-17 in San Francisco!

Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: