++
Cybersecurity / Insurtech12 months8 engineers

Safe Margins

AI-Driven Cyber Insurance Platform

Safe Margins is an end-to-end cyber-insurance platform that quantifies an organization's cyber risk in real time and turns that data into instant insurance quotes, policies, and claims. It connects three sides of the market — businesses (the insured), brokers, and carriers — in a single workspace, with a continuous security-monitoring engine and an AI advisor at its core. Built for fast underwriting decisions, transparent risk pricing, and a guided remediation path for every finding.

++
++
<5 min
Posture Audit Time
5+
Cloud Providers
8+
Compliance Frameworks
4
User Roles
-70%
Underwriting Cycle
99.95%
Uptime

The Challenge

What We Faced

Cyber insurance has two problems that compound each other. Underwriters lack live evidence of the risk they're pricing — they rely on PDF questionnaires that go stale the moment they're submitted. Insureds lack visibility into the same data underwriters care about, so they have no way to actively reduce premium or close gaps before renewal. The client needed a platform that could continuously assess any organization's external and internal security posture, translate that posture into an underwriter-readable risk score, run the entire quote-to-claim lifecycle, and give the customer a clear, AI-guided remediation track — all without the engineering team having to hand-code each integration or scoring rule.

Our Solution

How We Solved It

We built Safe Margins as a multi-tenant platform with continuous security telemetry feeding an AI-driven risk engine, wrapped in a role-aware workspace for customers, brokers, and carriers. A unified evidence layer pulls live signals from cloud accounts, exposed assets, leaked credentials, vulnerability feeds, and threat intelligence — normalized into a single Safe Margins Index per organization. The AI advisor (built on a tuned LLM pipeline) reads the same evidence and produces plain-language remediation steps, ranked by risk-to-premium impact, so customers can act on the issues that actually move the underwriting decision. On top of that engine sits the full insurance lifecycle: dynamic onboarding questionnaires, instant indicative quotes, broker placement and carrier bidding, policy issuance, and claims intake with timeline tracking. Stripe-backed billing, an action center for assigned remediation tasks, and edge-verified JWT authentication round out the production-grade plumbing.

++
RESULTS

Outcomes

Key Results

Real-time Safe Margins Index — single composite score updated on every new finding, used by underwriters and surfaced to the insured
AI remediation advisor — LLM-powered, context-aware fix recommendations with prioritized, premium-impact-aware ordering
Multi-cloud continuous posture audits across AWS, Azure, GCP, Kubernetes and M365 with sub-5-minute full-tenant scans
End-to-end quote to policy to claim lifecycle — onboarding, indicative pricing, broker/carrier marketplace, policy issuance, claim submission with evidence upload
Granular RBAC — parent/sub-user hierarchies, per-resource permissions, edge-verified JWT, HttpOnly cookies, no client-side token handling
Continuous compliance mapping to 8+ frameworks (PCI DSS, CIS, ISO 27001, SOC 2, NIST CSF, GDPR, HIPAA, NIS2)
++

Technology Stack

Next.js 14ReactTypeScriptTailwind CSSshadcn/uiZustandReact Hook FormZodRechartsNestJSMongoDBMongoosePassport JWTStripeOpenAINodemailerDockerTraefikVercelGitLab CI/CD
++++
++++
++

Ready to build something similar?

Let's Talk About Your Project

++