2
0 Comments

Do founders think about compliance when they start building or much later?

Quick research question for founders here 👇

When you started building your product:

  1. Did you ever plan to do formal compliance (SOC2 / ISO27001 / HIPAA / etc.)
  • Yes, from the beginning
  • Yes, but only later
  • No / never thought about it
  1. If yes, when did you actually start thinking about it?
  • While designing the product / architecture
  • After first customers
  • After enterprise customers
  • During fundraising
  • Only when someone explicitly asked for it
  1. Looking back, do you think:
  • Thinking about compliance earlier would’ve helped
  • It would’ve slowed you down
  • Or it didn’t matter at all for your business

Would love some answers 🙏

on December 23, 2025
Trending on Indie Hackers
Two Votes on Product Hunt → 2,000+ Users in Three Weeks Anyway 😌 User Avatar 56 comments AI Is Destroying the Traditional Music Business and Here’s Why. User Avatar 34 comments Fixing my sleep using public humiliation and giving away a Kindle User Avatar 23 comments The best design directories to show off your work User Avatar 13 comments Retention > Hype: What Are We Really Chasing as Builders? User Avatar 9 comments A growth tool built for indie developers: Get influencer marketing done in 10 minutes and track the results. User Avatar 8 comments