MAYA - AI Agent
Team Leader of AI Agents
Remediation Agent
Runs a dry run, waits for your approval, then fixes it
Evidence Collector
Collects your SOC 2, ISO 27001 and DPDP proof from the tools you already use
IP Scanner
Checks every public address for open ports, known CVEs and weak TLS
DAST (Public + Private)
Tests your APIs for 300+ vulnerability classes, inside and outside the network
CSPM
1,000+ checks across AWS, Azure and Google Cloud, mapped to your frameworks
Cloud Cost Optimization
Rightsizing and idle detection - customers cut cloud spend 28% on average
Integrations
20+ Integrations with your favorite tools
Asset Management
Finds vulnerabilities on your laptops and servers
ECR Container Image Scanning
Scans every ECR image for CVEs before it reaches production
Cloud Security
Keeping AWS, GCP and Azure locked down
AI Governance
Using AI at work without losing control of it
Data Privacy
DPDP, GDPR and looking after personal data
GRC
Audits, controls and staying ready for them
FinOps
Spending less on cloud without breaking things
API Security
Finding holes in your APIs before anyone else
SOC 2 Type II watches you for months. You cannot cram for it.
A Type II report covers a window of three to twelve months, so the evidence has to exist while the window is open. DeDups collects it from day one, every day, and hands you the package when the auditor asks. Connect an account in 15 minutes.
15 minutes to connect. No credit card. No sales call.Evidence has to exist across the whole period. Screenshots taken the week before prove nothing, and your auditor will say so.
The deal is waiting on a report you have not started.
In the US, SOC 2 is the price of entry to enterprise deals - the buyer’s security team asks before legal will read the contract. But Type II grades how you behaved over a period. Public companies carry a second clock too: material cybersecurity incidents go on a Form 8-K within four business days of the materiality decision.
- A deal is parked while somebody works out how long a SOC 2 takes.
- Access reviews happened, but nobody kept proof that they did.
- The same questionnaire arrives from every buyer, worded differently.
Evidence from day one, not from audit week.
Connect the account and the window starts filling itself in. Each passing check becomes dated, mapped evidence, so when the auditor picks a month it is already covered.
- 01Connect and baseline
One IAM role, no agents. The first scan lists every account, resource and control gap, usually inside 15 minutes.
- 02Collect evidence daily
Every check that passes becomes dated evidence, mapped to SOC 2, ISO 27001, HIPAA and PCI DSS controls automatically.
- 03Fix what fails, with a record
The remediation agent proposes the fix, runs a dry run, waits for your approval and logs the whole thing. That log is evidence too.
- 04Send a link, not a spreadsheet
Your Trust Center page gives buyers your posture and reports directly, so answering security review stops being one person’s second job.
The numbers, and what sits behind them.
Continuous, dated evidence across every connected cloud account
Auto-mapped to SOC 2, ISO 27001, PCI DSS, HIPAA, GDPR and the DPDP Act
One-click audit export per framework, with sources and control mappings
Trust Center page with access requests you approve one by one
Dry run, human approval, verification and rollback on every fix
1,000+ posture checks across AWS, Azure, Google Cloud and Kubernetes
A person still says yes.
Every fix is simulated and shown as a full diff before anyone approves it. The approval, the change and the verification are all recorded with a name and a time - which is the audit trail your auditor is going to ask for anyway.
The questions we get asked most.
No. Only a licensed CPA firm can. DeDups does the part that takes your team weeks: collecting, dating and mapping the evidence they will ask for. Bring your own auditor, or ask us for an introduction.
Teams typically land near 87% of technical controls on day one. Closing the rest is the real work, and the platform shows you which ones are open and who owns each of them.
Start with the free scan. It costs nothing, takes no card and runs in 15 minutes. If the report comes back boring, you have learned something useful for free.
Somewhere else on this list?
Start with your own numbers.
Connect one account. The first scan finishes in about 15 minutes and the report is yours either way - free, no credit card, no sales call. Read it, then decide.
sales@dedups.ai - we reply within 2 hours