cat ./support/README
Support
Every free resource here is funded by donations and paid downloads. If this work helped you, a small contribution keeps the free tier running. Donations are welcome — they never buy anything, they just keep the lights on.
Donate
Send USDC (or any supported token) on Polygon or Base. The address is checksummed — verify it before sending. Donations are not purchases; no goods or services are exchanged.
- $ USDC
0x537B27beF17eD838f31A90CAdeBa4EE748182404
$ check on explorer →
Donations fund free resources and server costs. Everything is tracked in the open payment runbook — see the security page for the trust model.
Free resources
No payment, no email wall — these are free to process and free to download, for humans and for AI agents alike.
Free: build an enforceable AI usage policy covering shadow AI inventory, allowlists, human review, and prompt hygiene.
$ available via the resources page →
Free: the fifteen highest-leverage security controls for small businesses — MFA, updates, backups, phishing defense, and network basics.
$ available via the resources page →
Paid resources
Deep-dive checklists, templates, and guides. Pay with crypto (USDC/DAI on Polygon or Base) and download instantly with a one-time delivery link.
Drop-in autonomy-tier configuration templates for research, dev, moderation, financial, and pipeline agents with guardrails.
$ 45 USDC →
Reliable prompt patterns for compliance and security documents: grounding, R-T-S-C structure, templates, and quality gates.
$ 35 USDC →
HIPAA Security Rule risk analysis template: asset inventory, threat mapping, safeguard gap analysis, risk scoring, and remediation plan.
$ 175 USDC →
PCI DSS v4.0 workbook: SAQ selection, CDE scoping, 12-requirement gap analysis, remediation plan, and maintenance calendar.
$ 125 USDC →
Step-by-step SOC 2 Type II readiness checklist mapped to AICPA Trust Services Criteria: scoping, control design, evidence collection, auditor fieldwork.
$ 150 USDC →
Small-business incident response plan: roles, severity levels, contain-eradicate-recover workflow, notification clocks, and tabletop maintenance.
$ 95 USDC →
Recurring vulnerability assessment program: inventory, scan cadence, prioritization, remediation SLAs, metrics, and pen-test escalation.
$ 85 USDC →