Everything your IT, compliance, and exam reviewers will ask — answered on one page.

Your portfolio data never leaves your machine — there is no vendor cloud to breach, subpoena, or trust. This page lays out exactly how that works, plus our release controls, backup behavior, and implementation evidence, in plain language you can forward straight to IT, compliance, accounting, or management.

Straight answers to the two questions every reviewer asks

Do you have SOC 2? Not yet — we are a new company and we will not claim a certification we do not hold. SOC 2 primarily attests how a vendor protects data it holds in its cloud. Our model removes that risk class entirely: we never hold your portfolio data. There is no vendor environment in scope to audit because your data stays on your machine, encrypted, under your IT controls.

Can I talk to existing customers? We are early and will not invent logos or testimonials. Instead, every claim on this page is independently verifiable — check the installer signature, verify the checksum, and tie your own book out on your own machine. Checkout is self-serve and unlocks the signed installer immediately, so your first working session is the evaluation — on your own data, with nothing sent to us — and the defect guarantee means the risk you take is time, not money. We would rather you trust the evidence than a reference call.

If Granite Hall ever went away, your data and software keep working

There is no cloud service to switch off. Your ledger lives in an encrypted database on your own machine, and the installer is a standard signed Windows program. Even with no further involvement from Granite Hall Solutions LLC, your installed copy keeps running and your data stays exactly where it is — fully under your control, in formats you can read and export.

Launch deployment model

Your data stays on your machine

The installed software keeps your holdings, CUSIPs, imported data files, GL balances, reports, and backups on your own systems, fully under your control. Our website only handles signing up, your license, downloading the software, support requests, and documentation — never your portfolio data.

Local data custody Encrypted local database Verified, tamper-proof download Authenticity codes for your IT team License kept separate from your data Proof your backups restore Support never needs your files Borrower data handled separately

Six areas your reviewers will probe — and where we stand on each, stated plainly.

01

Data Custody

Holdings, CUSIPs, source import files, GL balances, and report packages stay on your machine in an encrypted local database. We never receive, store, or transmit your portfolio data — so there is no vendor cloud that can be breached, subpoenaed, or go down. Support starts with logs, screenshots, versions, and reproduction steps, never your confidential source files.

02

Security Controls

Your data is encrypted on your own machine, with encryption keys protected by the operating system. The software supports role-based access, keeps an audit log of activity, verifies imported files and backups, and keeps billing and license information separate from your financial data.

03

Release Controls

Every production download is code-signed under publisher GRANITE HALL SOLUTIONS LLC, published with a SHA-256 checksum you can verify before install, and tied to a versioned release manifest and SBOM. Your IT team can confirm the signature and checksum independently — nothing on this page requires you to take our word for it.

04

Backup & Restore

Automatic and manual restore points are taken on-device, each with an integrity hash and a pre-restore safety snapshot so a restore can never overwrite good data. Every restore produces a dated, hashed record you can hand an examiner as evidence that recovery was tested and works.

05

Implementation Evidence

During the evaluation you get a list of your data files, your import mapping, proof the numbers balance, a sample support request, a tested backup restore, notes on how licensing works, and a summary of where the software fits your needs and any gaps.

06

Borrower PII Gate

Anything involving online loan applications is kept completely separate from the desktop software and held to stricter standards — including secure document storage, malware scanning, separation between institutions, data-retention controls, electronic-signature (E-SIGN) records, and legally reviewed borrower workflows.

ProcurementSecurity overview, data flow, release controls, support boundaries, and insurance/vendor questionnaire responses.
ITInstaller, checksum, activation, local storage path, update process, firewall expectations, and backup location.
AccountingImport mapping, report coverage, GL tie-out, call-report support, review signoff, and month-end output examples.
ManagementROI estimate, evaluation results, implementation scope, ongoing price, support expectations, and expansion path.

Your first working session is the evaluation

Checkout is self-serve and unlocks the signed installer immediately. Verify the checksum, import a real portfolio, and run a full month-end close — all on your own machine, with nothing sent to us. And because the defect guarantee covers you if a genuine, verified defect stops you from using what you paid for, what you are risking is evaluation time — not your money, and never your data.

Pick a plan & get the installer