| Tool | Role | API Status |
|---|---|---|
| Sumsub | Client data + KYC repository | ✅ Confirmed — plan tier includes API at no extra charge. Web SDK, Mobile SDK, API all available. |
| Asana | Task tracking | ✅ Confirmed |
| Google Sheets | Risk assessment (stays in Sheets — stateless) | ✅ Confirmed — Sheets API v4, service account supported |
| Elliptic | Transaction monitoring alerts | 🟡 Public API confirmed — whitelist endpoint coverage under their enterprise contract TBC |
| Fireblocks | Trade / transaction registration | ✅ Confirmed |
| Google Drive | Document storage + client folders | ✅ Confirmed — Drive API v3, service account supported |
| Slack | Internal team discussions + comms | 🟡 Confirmed in use — API access assumed yes, pending verification. Scope pending Q2. |
Only what was explicitly said on the call. Nothing inferred.
| Scenario A Automation only |
Scenario B Cards dashboard |
Scenario C Timeline + Slack |
|
|---|---|---|---|
| What's included | Workflows 1–6 only. No dashboard. | Workflows 1–6 + cards view (Option A dashboard). Slack excluded. | Workflows 1–8. Timeline view (Option B). Slack integrated. |
| Depends on | Client declines dashboard | Q1 = Option A (cards) | Q1 = Option B (timeline) + Q2 = Slack included |
| Dev hours | 200 hrs | 300 hrs | 400 hrs |
| Pace / calendar | 20 hrs/wk · ~10 wks | 20–25 hrs/wk · ~12–14 wks | 25–30 hrs/wk · ~14–16 wks |
| Dev cost | €10,000 | €15,000 | €20,000 |
| Tooling | €800 | €1,200 | €1,600 |
| COGS | €10,800 | €16,200 | €21,600 |
| Price (40% margin) | €18,000 | €27,000 | €36,000 |
| Gross margin € | €7,200 | €10,800 | €14,400 |
Equal 25% tranches tied to delivery triggers. Monthly subscription starts 30 days after M4 go-live sign-off.
| Milestone | Trigger | A (€18K) | B (€27K) | C (€36K) |
|---|---|---|---|---|
| M1 | Contract signed + GDPR Art. 28 DPA executed | €4,500 | €6,750 | €9,000 |
| M2 | Month 1 review — first workflows in staging | €4,500 | €6,750 | €9,000 |
| M3 | Month 2 review — core automation complete | €4,500 | €6,750 | €9,000 |
| M4 | Go-live sign-off — full system in production | €4,500 | €6,750 | €9,000 |
| Total implementation fee | €18,000 | €27,000 | €36,000 | |
| Implementation fee (4 milestones) | €27,000 |
| Monthly subscription · est. 6 months from M4 (conservative) | €7,200 |
| Y1 total revenue | €34,200 |
| Y1 COGS (build €16,200 + 6mo support €4,200) | €20,400 |
| Y1 gross profit | €13,800 (40%) |
| # | Question (sent to Mariana) | Pricing / scope impact | Blocking? |
|---|---|---|---|
| Q0 | Workflow design — do you want us to design the logic (triggers, decision rules, information flow), or do you have them defined and need implementation only? | Design phase adds €3–5K and 2–4 weeks to any scenario | Yes — price |
| Q1 | Dashboard type — Option A (cards: current status per system) or Option B (timeline: full chronological history)? ASCII wireframes of both included in message. | Option A = Scenario B (€27K). Option B = Scenario C (€36K). €9K delta. | Yes — price |
| Q2 | Slack — (a) one dedicated channel per counterparty or keyword search across shared channels? (b) outbound notifications only, or does the team need to approve/action from Slack? | Outbound only = included in Scenario C as-is. Interactive (two-way) = +€5–8K on top of Scenario C. | Yes — price |
| Q3 | Auth — do you use Google Workspace? If yes, Google SSO replaces building a login system entirely. | Google SSO saves ~1 week dev if yes | No — scope only |
| Q4 | Audit log — 5-year retention: exportable from our system on demand (CSV/JSON), or sufficient to log to your own infrastructure? | Export capability adds ~1 week backend work | No — scope only |
| Q5 | Slack data in dashboard — your privacy policy lists Slack as a personal data channel. Does your compliance team have sign-off to surface Slack messages in the dashboard under data minimisation obligations? | No sign-off = Slack excluded from the dashboard view. Reduces Scenario C scope. | Yes — scope |
| Q6 | Access roles — how many distinct tiers? (e.g. compliance team sees everything including Elliptic whitelist, ops sees onboarding only, management sees read-only summaries) | Each additional role tier adds RBAC scope to the build | No — scope only |
Once Mariana answers Q0–Q2, these are the decisions needed before the proposal goes out. Please reply with yes/no or your pick on each.