13 Layers. 24 Hours.
Your Build Plan, Not a Guess.

A 13-layer production engineering scan of any AI-built, citizen-coded, or vibe-coded application. We review the full codebase, probe the live deployment, and deliver a modular scope with a Statement of Work ready for signature. The discovery becomes the build plan.

$200
Flat. One-time.
13
Production layers scanned
24hr
Turnaround
SOW
Delivered with every report

Read-only repo access. Revoked when the report lands. NDA available on request.


The Starting Point for Every Faction Engagement.

90% of vibe-coded apps never ship. Not because the code doesn't work, but because nobody scoped what production actually requires. The Production Discovery replaces guesswork with a 13-layer assessment that produces a modular build plan, a prioritized scope, and a Statement of Work your team can approve and execute against.

Role 01

Scoping Engine

The discovery scores your platform across all 13 layers and produces a modular Statement of Work. How many modules, which layers, in what order. No discovery calls, no estimates, no guesswork. The findings are the scope.

Role 02

Independent Validation

Your team built fast with AI tools. The discovery tells you, with specificity, what's production-ready and what isn't, before your customers, your investors, or an incident report does. Third-party validation on letterhead.

Role 03

Procurement Artifact

Enterprise procurement teams require third-party assessments. Boards ask who reviewed the security. The discovery produces the documentation that satisfies both, with severity ratings and a remediation roadmap.

The discovery becomes the build plan. The 13-Layer Scorecard and prioritized findings translate directly into a modular Statement of Work. Criticals become P1 modules. Warnings become P2 modules. The scope writes itself.


Built for Teams Shipping to Real Customers.

Mid-Market Companies Evaluating Internal Builds

Your teams and citizen coders are building software in-house, and some of it is headed for customers. The discovery tells you which builds are deployment-ready and which need a finishing engagement to carry your name.

Technical Founders Facing Procurement

The deal is real but the vendor security questionnaire is in your inbox. The discovery produces the documentation procurement expects, and the Statement of Work to close the gaps they'll flag.

Companies Needing Vendor Documentation

Assessment results are a standing requirement for vendor lists at larger customers. $200 and 24 hours gets you the artifact and a clear plan to address anything that isn't passing.

Teams Preparing for Production

You've built something real. Now you need to know what stands between here and production. The discovery maps the distance and scopes the work to close it.


The 13 Production Layers. Every Discovery, Every Time.

The same 13-layer framework that runs every Faction engagement and backs the CADE certification for AI-directed engineers. Nothing gets a pass because it wasn't checked.

Scroll to run a sample scan

13-Layer Scan

Sample scorecard
01Frontend Foundations
02APIs & Backend Logic
03Database & Storage
04Auth & Permissions
05Hosting & Deployment
06Cloud & Compute
07CI/CD & Version Control
08Security & RLS
09Rate Limiting
10Caching & CDN
11Load Balancing & Scaling
12Error Tracking & Logs
13Availability & Recovery

Three Grades. No Ambiguity.

Every layer receives one of three scores. The scorecard reads in thirty seconds and holds up in a procurement review.

Pass

The layer meets production standard. Documented, verified, nothing to action.

Warning

The layer works but carries risk at scale. The Statement of Work includes a module to address it.

Critical

The layer has a flaw that threatens security, data, or availability. Becomes a P1 module in the Statement of Work. Fix before deployment.


What $200 Produces.

Full scan across all 13 production layers. Codebase review via read-only GitHub access plus live deployment probe.

Security vulnerability analysis. Auth, RLS, injection surfaces, exposed keys, rate limits, dependency CVEs.

Severity-rated findings. Every issue graded Critical, Warning, or Pass with its location in the codebase.

The 13-Layer Scorecard. One page. The document you hand to procurement, the board, or your insurer.

Modular scope and build plan. Critical and Warning findings translated into a prioritized module sequence with estimated hours and timeline.

Statement of Work. The discovery output is a SOW ready for review. Module count, layer assignments, pricing, and timeline. Sign it and work begins.


Four Steps. One Day.

1

Intake

Five-minute form: repo URL, stack, what the application does, where the report goes.

2

Payment

$200 flat via Stripe. No proposals, no discovery calls, no invoicing cycle.

3

Scan

Your stack is scanned against all 13 layers through read-only GitHub access plus a live deployment probe.

4

Deliverable

Branded PDF with scorecard, findings, modular scope, and Statement of Work in your inbox within 24 hours.


Read-Only. Revocable. On the Record.

Your Code Stays Yours

Faction Audit Reader is a read-only GitHub App. It can view repository contents to run your discovery. It cannot push commits, edit files, delete branches, change settings, or access repos you did not select.

The repo is reviewed for the discovery and purged after the report is generated. Nothing is stored, archived, or reused.

An NDA is available on request before we see anything. For teams with formal vendor requirements, that's standard practice.

Revoke anytime. The moment your report lands, or any moment before it, you remove the collaborator invitation. Two clicks. Access dead. You hold the keys for the entire engagement.

Public Repo

1. Paste your GitHub URL in the form.
2. Pay via Stripe.
3. Done. Discovery begins when payment confirms.

Private Repo

1. Install Faction Audit Reader on that repo only.
2. Complete the intake form with your GitHub URL.
3. Pay via Stripe. Discovery begins when payment confirms.


$200
Flat rate. One-time. 24-hour delivery. Statement of Work included.
Start Your Discovery →

Secure payment via Stripe. Report delivered as a branded PDF with modular scope and SOW. Re-discoveries available after remediation at the same rate.


Six Fields. That's Everything.

Name, email, stack, description, repo URL, live URL. Then Stripe checkout via Tally.

Private repo? Install Faction Audit Reader (read-only) on your repo before you submit. Why it's safe →

Loading intake form…

Production Discovery · One-Time · $200 · Secure payment via Stripe. Faction Audit Reader (read-only). Repo purged after report. Revoke access anytime. Code safety FAQ. By paying you agree to our Terms and Refund Policy.

Questions first? support@gofactiongroup.com or Help & Support


The SOW Has Two Paths Forward.

The discovery scoped the work. Now choose how Faction delivers it.


Know What You're Standing On.

13 layers. 24 hours. The $200 that scopes everything that comes after.