Each entry gets a holding, not a star rating. Verdicts are revisited whenever a vendor changes its security posture or pricing.
Shared vaults, per-matter access, forced two-factor.
Holding — Vaults separate matters by client; forced MFA closes the most common intake-form leak.
Client-side encryption layered over existing email.
Holding — Keeps privileged attachments unreadable in transit, satisfying a plain reading of the "reasonable efforts" standard for email.
Endpoint protection with ransomware rollback.
Holding — A locked matter-management server is a malpractice claim waiting to happen; rollback matters more here than at most SMBs.
Permissioned file sharing built for matter teams.
Holding — Strong permissioning out of the box, but full audit-trail export sits behind the higher tier — budget for it before hold season.
Business VPN and network access control for remote staff.
Holding — Fixes the "reviewing discovery from a coffee shop" problem cleanly; per-user access logs help if a carrier ever asks for one.
Endpoint cleanup and remediation, lighter footprint than a full EDR suite.
Holding — Reliable for cleanup, but the console has no per-matter tagging — fine for a solo practice, thin for anything a bar auditor would want itemized.
Browser-level phishing and malicious-link protection.
Holding — Catches the fake-DocuSign and fake-court-notice links that hit the front-desk inbox; no centralized admin console yet for firms past a handful of seats.
Personal-tier file sync tools used ad hoc for client documents.
Holding — No forced MFA, no admin console, no audit log, no way to revoke a departing paralegal's access on the spot. Fails Model Rule 1.6(c) on its face, whichever brand it happens to be.
Under review — vendor response pending before publication.