Changelog
Continuous shipping, in public. Subscribe via RSS — link in the footer once it ships.
Skip the IAM-role wizardry. Click "Connect AWS" and a scoped CloudFormation stack provisions the read-only role Norven needs. Status updates in real time via webhook. Manual stack launch is still available under Advanced.
Board update and customer trust report exports now respect the active locale (English or Hebrew) at run time. Auditor evidence packs include the hash manifest as the first page.
Amendment 13 ships as a first-class framework: database registration, DPO duties, security-level classification under the 2017 Data Security Regulations, breach notification workflow. Hebrew-native policy templates included.
Connect Norven to a GitHub organization through the official App flow. Branch protections, code scanning, and security advisories now flow into the SOC 2 CC8 evidence schedule automatically.
Auditor logins are read-only and bounded by the audit window they were invited to. Re-invite for the next window without re-onboarding the firm.
SOC 2 and ISO 27001:2022 frameworks, cross-mapped controls, continuous evidence collection, and auditor portal — available in private preview.