
Vin Curran
152 posts

Vin Curran
@VinCurran
Sales @ Acrisure Cyber https://t.co/dbGYrN5tqt
Boston, MA Katılım Kasım 2012
1.2K Takip Edilen206 Takipçiler


Delve, a YC-backed compliance startup that raised $32 million, has been accused of systematically faking SOC 2, ISO 27001, HIPAA, and GDPR compliance reports for hundreds of clients. According to a detailed Substack investigation by DeepDelver, a leaked Google spreadsheet containing links to hundreds of confidential draft audit reports revealed that Delve generates auditor conclusions before any auditor reviews evidence, uses the same template across 99.8% of reports, and relies on Indian certification mills operating through empty US shells instead of the "US-based CPA firms" they advertise. Here's the breakdown:
> 493 out of 494 leaked SOC 2 reports allegedly contain identical boilerplate text, including the same grammatical errors and nonsensical sentences, with only a company name, logo, org chart, and signature swapped in
> Auditor conclusions and test procedures are reportedly pre-written in draft reports before clients even provide their company description, which would violate AICPA independence rules requiring auditors to independently design tests and form conclusions
> All 259 Type II reports claim zero security incidents, zero personnel changes, zero customer terminations, and zero cyber incidents during the observation period, with identical "unable to test" conclusions across every client
> Delve's "US-based auditors" are actually Accorp and Gradient, described as Indian certification mills operating through US shell entities. 99%+ of clients reportedly went through one of these two firms over the past 6 months
> The platform allegedly publishes fully populated trust pages claiming vulnerability scanning, pentesting, and data recovery simulations before any compliance work has been done
> Delve pre-fabricates board meeting minutes, risk assessments, security incident simulations, and employee evidence that clients can adopt with a single click, according to the author
> Most "integrations" are just containers for manual screenshots with no actual API connections. The author describes the platform as a "SOC 2 template pack with a thin SaaS wrapper"
> When the leak was exposed, CEO Karun Kaushik emailed clients calling the allegations "falsified claims" from an "AI-generated email" and stated no sensitive data was accessed, while the reports themselves contained private signatures and confidential architecture diagrams
> Companies relying on these reports could face criminal liability under HIPAA and fines up to 4% of global revenue under GDPR for compliance violations they believed were resolved
> When clients threaten to leave, Delve reportedly pairs them with an external vCISO for manual off-platform work, which the author argues proves their own platform can't deliver real compliance
> Delve's sales price dropped from $15,000 to $6,000 with ISO 27001 and a penetration test thrown in when a client mentioned considering a competitor

erin griffith@eringriffith
A detailed and brutal look at the tactics of buzzy AI compliance startup Delve "Delve built a machine designed to make clients complicit without their knowledge, to manufacture plausible deniability while producing exactly the opposite." substack.com/home/post/p-19…
English
Vin Curran retweetledi

Imagine working on a Friday when you can simply watch the Mustang Classic instead.
Screw shareholder value, tap in. This Lynchburg-CNU game is lit! team1sports.com/gomustangsport…

English
Vin Curran retweetledi

🚨 FINAL: @LynchburgMLAX 14, Salisbury 11
Sea Gull's first regular season loss since 2023!!
- Riley Hastings paced the offense with 3g, 1a.
- Eric Allen made 15 saves.
- Lynchburg with more GBs despite 5 less FO wins.
@Inside_Lacrosse #d3lax SB: tinyurl.com/mueacxbt
English

@MaxTynan @InspectahFunk Any other offices or ability to sit on East Coast e.g. Boston or NYC?
English

We have more inbound demand for Software Factory than we can manage. We're looking for someone to own that, and to drive targeted outbound. You'll onboard customers, land initial deals, and expand them into seven-figure relationships.
You:
* Are early in your career and hungry
* Can recognize patterns and are obsessed with process
* Have grit and are a self-starter. Success in enterprise sales is often about persistence and genuine curiosity about your customers and their challenges. Early startups are hard
* Thrive in ambiguity and with autonomy
* Want to go all-in with an incredibly talented team
* Have evidence of exceptional ability
This isn't a traditional AE seat. We want missionaries, not mercenaries. Come build with us...
English

@AppleMusic That was a failed experiment, pass the buck to @Spotify next year let them get an at bat
English

What was your favorite moment of the #AppleMusicHalftime Show? 🐰
English

@rabois Please expand on the workout types - by my math you were avg. ~3 workouts a day
English

@litcapital @JoeSquawk is the only voice of reason there who can fix this, marketing needs to report to you
English

What the fuck is this
CNBC@CNBC
A new mark for our next chapter — introducing the new CNBC logo. Coming December 13th.
English

@Jason @Geiger_Capital about that time for you to rein the “independent moderate” in through calling balls & strikes
English

@nytimes Welp that does it, finally canceling my subscription-Bloomberg & WSJ give me the same articles *without the lunacy (relatively)…even Wordle, Wirecutter & Recipes only have so much staying power
English

Top Trump officials used Charlie Kirk’s death to threaten liberal groups, making unsubstantiated claims about a “domestic terror” movement. nyti.ms/3Vjexcb
English

@typesfast Boston is not far behind…..there was a ticket for an expired registration on my car this morning (expires in 2026) meanwhile a homeless man was defecating one space down; he’s not to be outdone by the guys shooting up in our neighborhood park though….
English

I saw two guys smoking fentanyl and a guy taking a dump on Market street in Sn Francisco during my afternoon walk yesterday.
I also got a ticket for running a stop sign on my bicycle and city fire inspectors are making my company dismantle all our office phone booths bc they don’t have sprinklers.
Anarcho tyranny
English

@chamath In step with one of the best leaders in history - Churchill had a similar take “Those who never change their minds, never change anything”
English

If you’d like to get rich or stay rich, I’d encourage you to develop the ability to change your mind.
Most ideas are shitty. So staying fixated on shitty ideas creates an anchoring bias that will weigh you down to the mediocrity of the masses. Learn to change your mind and skate to where the puck is going to be.
Others who can’t change their minds will constantly remind you of a former opinion. Ignore them. They want you to be down there with them so they can feel better about themselves. Don’t fall for it!
English

@DavidSacks Sacks you should forward her the invite, aesthetically a great add
English

🤣
Tara Palmeri@tarapalmeri
WH Corro Assoc dinner feels weird. For the first time, the entertainment was canceled and administration officials have been warned not to attend. In fact, they are going to parties hosted by billion Pay founder David Sacks & @Bannons_WarRoom. More to follow on those parties...
ART


@micsolana Decision criteria? SFO is clean & solid food picks but Boston is best in terms of proximity to any part of city (max 15 minute drive) which makes in n out way easier.
English













