Serapis makes federal compliance provable — AI-drafted, deterministically validated, and immutably logged. Every classification guide, every control, every claim, backed by evidence an assessor can verify — so documentation ships in minutes instead of weeks, the path to ATO shortens, and over-classification stops at the source.
From security architecture to AI-powered documentation — we operate where precision and mission intersect.
Serapis shows you every obligation your nonprofit owes — federal and in each state you operate — each one cited to its official .gov source. It watches the IRS Form 990 clock, because miss three annual filings in a row and tax-exempt status is revoked automatically. No notice. No appeal. See where you stand today, in plain language, with the receipts.
Federal and state filings, registrations, and renewals for where you actually operate — one list, each item linked to the official government page it comes from. Nothing you have to take on faith.
We track your Form 990 history against the three-year auto-revocation rule and flag risk early — so a missed filing is a reminder, not a catastrophe you learn about after the fact.
One page that says where your organization stands today and what's due next — exportable as a clean, board- and auditor-ready report whenever you need to show your work.
We send a reminder ahead of every filing date we track — a backstop, not a substitute for your own calendar, so nothing lives only in someone's head.
Serapis shows you what the public record shows, cites every source, and routes anything that takes professional judgment to a qualified pro — never a black box, never a verdict we can't back with evidence. That restraint is the point: it's what makes the report trustworthy to a board, an auditor, or a funder.
See where you stand today and what's coming due. If a firm or fiscal sponsor manages your books, you come in free under them.
Carry 50, 150, or 300 tiny nonprofits? Put your whole book on one dashboard with one 990 sweep — and the orgs come in free.
Founding-firm pilot spots are open. The nonprofits you bring in are free during the pilot.
Tell us who you are and we'll get back to you personally. Firms and fiscal sponsors get a portfolio walkthrough; nonprofits get pointed to the fastest way to see where they stand.
If you carry 50, 150, or 300 tiny nonprofits — as a fiscal sponsor, a nonprofit CPA practice, or an association management company — you carry their standing too. Serapis gives you a single portfolio view: every managed org's obligations, every 990 clock, every upcoming deadline, cited to source. You stop chasing status one EIN at a time.
You sign up once and bring your managed organizations in under your account. During the pilot, the nonprofits themselves join free — you're not asking 200 tiny orgs each to buy software. You get the portfolio dashboard, the cross-book 990 sweep, and per-org reports your team can hand a board or an auditor without reformatting anything.
See every org's auto-revocation risk on one screen, ranked by what needs attention first.
Federal and per-state, sourced to the official page, so your staff verify instead of re-research.
Board- and auditor-ready, per org, on demand — the same discipline across your entire book.
The portfolio you're responsible for, finally visible in one place instead of scattered across inboxes.
You're the customer; the tiny nonprofits are the beneficiary, not the payer. They come in free because charging a 3-person cat rescue $9/month was never the model — and because the orgs under you are never separately billed, upsold, or marketed to. "Pilot" means founding terms and direct access to the team building this; we'll tell you plainly if and when standard pricing begins, with notice. You control the client relationship the whole way.
A CPA with 200 clients shouldn't have to re-key 200 EINs. Add your book by EIN list or CSV; because we prefill from the public record, most of each org stands itself up — obligations and 990 history already mapped. No integration required to start, and no rip-and-replace: Serapis is the 990-and-obligation layer on top of the tools you already use, not a new system your team has to migrate into.
Add managed orgs by EIN or CSV. We pull the public record and map each org's obligations and 990 history.
One dashboard across every org — what's aligned, what's due, what's at risk. Start with the orgs that need you today.
Export a clean, cited, board- and auditor-ready report for any organization in seconds.
Tax software files one org's one form. A spreadsheet is only as current as the last person who touched it. Neither sweeps 50-state obligations across a whole book, watches the multi-year auto-revocation clock for every org at once, or produces a cited, board-ready report on demand. Serapis is the layer that does.
You pay per managed organization; the nonprofits under you don't pay at all. Pricing scales with your book, not with seats — one predictable line per org, so you can price it into what you already charge. Founding firms get pilot terms and direct access to the team.
Four things Serapis does, and exactly how far each one goes. Where a claim needs professional judgment, we say so and route it — we don't guess in your name.
We surface what your nonprofit owes federally and in each state you operate — registrations, renewals, and filings — and link each one to the government page it comes from. You're never asked to trust a number without seeing where it lives. We start with Hawaii and are expanding state by state.
Three consecutive missed annual 990s means automatic loss of tax-exempt status — no letter, no appeal. Serapis tracks your filing history against that rule and flags exposure early, so the clock is something you watch, not something that ambushes you.
One page shows where the organization stands today and what's due next — and turns into a clean, cited report your board, auditor, or funder can read without translation. It reflects the public record, so it's honest about what's known and what isn't. See a sample report →
For every date we track, you get a reminder ahead of it — a backstop, not a substitute for your own filing calendar. You remain responsible for filing; we make sure nothing lives only in one person's head.
Miss three consecutive annual Form 990 filings and the IRS revokes tax-exempt status automatically — no notice, no appeal. Enter your most recent filing year for a quick, self-entered read.
Serapis was built doing real compliance work for defense and federal programs — CMMC, NIST 800-171, GovCloud-to-air-gap. We hold your organization's information to that same discipline. Here's what that means, in plain terms.
We don't sell it, rent it, or share it for marketing. It exists to show your standing — nothing else.
Much of what powers your dashboard is already-public government data; anything you add, you control.
Standard modern encryption on the wire and in storage — no exceptions for convenience.
Firms see their own book; each org sees its own record. Access follows who's responsible, not who's curious.
The same evidence-ledger discipline behind our federal work means we can show where a status came from — not just assert it.
When the public record is incomplete or a question needs a professional, we say so rather than filling the gap with a guess.
We are: a civilian, public-records compliance service with hardened web security, encryption in transit and at rest, least-access controls, and a traceable evidence trail. Our founders do real CMMC / NIST 800-171 work for federal programs, and that discipline is baked into how this is built.
We're honest about what we're not: this civilian nonprofit service is not SOC 2, FedRAMP, or CMMC-accredited — those are federal accreditations for a different surface, and we won't imply this product carries them. It holds public and org-provided compliance facts, never classified or controlled federal data. We'll pursue SOC 2 when a customer's due diligence requires it, and we'll say so plainly rather than claim a badge we don't hold.
We build on established providers, not homegrown infrastructure: Cloudflare (edge/hosting), Microsoft 365 (email), WorkOS (authentication), Render (application hosting), and Resend (transactional email). If you need a sub-processor list or a data-processing agreement for your vendor review, ask us — we'll provide the current details.
Firms, CPA practices, and fiscal sponsors pay per managed organization. The nonprofits you bring in pay nothing. One predictable line per org, so you can price it into what you already charge clients.
Prices are per managed organization, per month, for the founding pilot — billed monthly, or pay manually (annual, upfront) for a slight discount. The volume rate applies automatically at 50+ managed orgs. The nonprofits you bring in are free during the pilot — never separately billed, upsold, or marketed to. Tell us your book size and we'll confirm your exact terms before you commit.
The questions a treasurer or a CPA actually asks — answered plainly, in the same voice we use everywhere else.
No — and be wary of any tool that says it does. We show you what the public record and the cited rules say, we track your deadlines, and we flag anything that needs professional judgment so a qualified pro can handle it. We organize and surface; we don't certify. That honesty is exactly what makes the report credible to a board or an auditor.
Nonprofits invited through a managing firm or fiscal sponsor are free during the pilot. Firms, CPA practices, and association managers pay per managed organization — one predictable line per org, priced to fit into what you already charge clients. Tell us your book size and we'll give you a real number.
Your data is encrypted in transit and at rest, access is scoped to who's responsible for the organization, and we don't sell or share it for marketing. Much of what powers your dashboard is already-public government data; anything you add stays under your control. The Security & Trust page has the specifics, including our current providers.
It happens — public records lag and occasionally err. That's exactly why we cite the source for every item and flag rather than assert. If what we surface doesn't match your records, we show you where our data came from so you can reconcile it, and we route genuine discrepancies to a professional. We'd rather flag a false alarm than hide a real risk.
If a nonprofit fails to file its required annual Form 990 (or 990-EZ / 990-N) for three consecutive years, the IRS automatically revokes its tax-exempt status — with no notice and no appeal. Getting reinstated is slow and costly. Watching that clock across every org is one of the most valuable things Serapis does.
You sign up once and bring your whole book in by EIN or CSV. You get one dashboard across every managed org — every obligation, every 990 clock, every deadline — and per-org reports you can hand a board or auditor without reformatting. One 990 sweep instead of two hundred. The orgs come in free during the pilot; you pay per managed org.
No — it makes them more effective. Serapis handles the tracking, the sourcing, and the "what's due when" so your professionals spend their time on the judgment calls that actually need them. Anything requiring legal, tax, or accounting judgment is flagged and routed to a pro, never auto-decided.
Serapis is a Service-Disabled Veteran-Owned Small Business built by veteran founders doing real federal and defense compliance work — SBIR, CMMC, NIST 800-171. We're new to nonprofit compliance and we won't pretend otherwise: we don't yet have a wall of nonprofit logos. What we bring is the discipline that federal work demands — cite your sources, prove your claims, and never rubber-stamp what you can't back.
Serapis Architecture is a Service-Disabled Veteran-Owned Small Business. We do real compliance work for federal and defense programs — and we built this because the discipline that keeps a defense audit honest is exactly what a small nonprofit needs and can never afford.
Before defense, our founder ran FINRA compliance audits and anti-money-laundering investigations in financial services — the world where "we think we're fine" isn't good enough and every claim has to be provable. That's the instinct behind Serapis: don't assert compliance, show the evidence, cite the source, and route the judgment calls to the people licensed to make them.
Today that same engine — governed, rules-based, evidence-first — powers work for federal programs under CMMC and NIST 800-171. A tiny nonprofit owes a smaller list of obligations than a defense contractor, but the failure mode is just as brutal: miss three 990s and the IRS revokes your existence with no appeal. The rigor transfers directly.
A defense-focused technology firm built by veterans who have operated in the environments our clients serve.
Serapis Architecture is a defense-focused technology company delivering compliance infrastructure and AI-powered security systems for federal contractors and government agencies. We work where precision isn't optional — where a documentation gap becomes a mission risk.
Founded by veterans who have served in the environments our clients operate, we bring operational experience alongside deep technical depth. Our work spans cloud security architecture, intelligent compliance systems, and defense training technology — each discipline reinforcing the others.
The name Serapis carries meaning by design: the ancient deity who embodied the merging of worlds, a figure of authority bridging realms. That is what we do — we bridge the world of operational mission requirements with the world of technical infrastructure, making compliance something that enables the mission rather than slowing it down.
Our veteran founders served in the naval aviation, electronic-warfare, and ground-based air-defense communities — accumulating more than 30 combined years of operational mission experience, paired with 15 years of platform-engineering depth from our technology lead. That service shapes how we operate: with discipline, accountability, and a deep understanding of what's at stake when systems fail.
We are a small company by design — not by limitation. Fewer layers mean faster decisions, direct accountability, and a culture where every person's contribution is visible and valued.
We are committed to building pathways for veterans entering the technology sector, and to supporting the defense community that shaped our founders. Service doesn't end at separation.
We hire people who build things — engineers, architects, and operators who take ownership of outcomes rather than activity. We value judgment, depth, and the ability to operate with ambiguity.
One governed compliance platform — AI that drafts, validates, and immutably logs federal security documentation so a claim is provable before it becomes a record. Two more capabilities ride the same architecture: a federally-scoped documentation engine and a deterministic AI adversary engine (CATE) — all governed by ITIL v5 and the 6C AI Capability Model.
From prime contractors to program offices, we operate where compliance and mission converge.
We're building a company where people with operational background and technical depth can do their best work.
Serapis Architecture is an early-stage company with a clear purpose and a founding team that has built and operated in the environments our work targets. We are looking for people who bring both domain knowledge and technical capability — and who are motivated by meaningful work in the defense and federal space.
We value judgment over credentials, depth over breadth, and builders who take ownership of outcomes. If you have a background in defense, federal contracting, cloud security, or compliance — and you want to work on problems that matter — we'd like to talk.
All roles are remote-first. Clearance eligibility is required for most positions. Veterans are strongly encouraged to apply.
Our leadership team responds directly. Whether you're evaluating a compliance challenge, exploring a partnership, or looking to understand what we build — reach out and we'll get back to you promptly.
Plain-language statements of how this site works, what we do and do not collect, and the terms that govern your use.
Serapis Architecture LLC ("Serapis," "we," "us") is a Kansas limited liability company providing compliance infrastructure and AI-governed security systems to defense and federal customers. Questions about this notice may be directed to privacy@serapis-architecture.com.
This Privacy Policy describes our handling of information collected through serapis-architecture.com and related subdomains operated by Serapis. It does not cover any system we operate under contract for a federal customer; those systems are governed by the applicable Authority To Operate, System Security Plan, and federal privacy authorities (including the Privacy Act of 1974, where applicable).
We use the information described above to operate and secure the site, to respond to inquiries you initiate, to investigate suspected abuse, and to comply with applicable law. We do not sell personal information. We do not share personal information with third parties except: (a) our hosting provider (Cloudflare) acting as a processor under its own published terms; (b) where required by law, valid legal process, or government request; or (c) with your express direction.
Server log data is retained per Cloudflare default schedules. Contact-form submissions and direct correspondence are retained for as long as reasonably necessary to address the underlying matter and to maintain customary business records, then deleted on a routine cadence.
Depending on where you reside, applicable law (including the California Consumer Privacy Act / California Privacy Rights Act and the EU and UK General Data Protection Regulations) may give you the right to access, correct, delete, or restrict the processing of personal information we hold about you, and to lodge a complaint with a supervisory authority. To exercise any of these rights, contact privacy@serapis-architecture.com. We will respond within the timeframe required by the applicable law.
We apply administrative, technical, and physical safeguards consistent with our compliance posture (NIST SP 800-171 aligned; CMMC Level 2 readiness in flight). No transmission over the public internet can be guaranteed completely secure.
If we materially change this notice we will update the effective date above and, where feasible, post a brief change summary at the bottom of this page.
By accessing serapis-architecture.com you agree to these Terms of Use. If you do not agree, do not use the site.
The content on this site is provided for general informational purposes about Serapis Architecture LLC's capabilities, leadership, and federal contracting posture. It is not a binding offer, a representation under any federal acquisition regulation, a security-control attestation, or legal, security, or compliance advice. Specific engagement terms, deliverables, and performance commitments are set forth only in written agreements between Serapis and a customer.
All content, design, code, trademarks, and trade dress on this site are the property of Serapis Architecture LLC or its licensors and are protected by U.S. and international law. You may view and download single copies for personal, non-commercial reference. No other use, including reproduction, modification, distribution, scraping, or training of machine-learning models on this content, is permitted without prior written authorization.
You may not use this site to: (a) attempt to gain unauthorized access to any system; (b) probe, scan, or test the vulnerability of any system without written authorization; (c) interfere with the site's operation or other users' access; (d) submit false, misleading, or unlawful content; (e) impersonate any person or entity; or (f) violate any applicable law or export control. Suspected violations may be referred to appropriate authorities.
Information on this site may relate to technology subject to U.S. export controls (EAR / ITAR). You are responsible for complying with all applicable export laws in your use of the information. Federal procurement audiences are reminded that public capability statements are non-binding marketing materials and do not constitute formal proposals, quotations, or representations under FAR Part 15 / DFARS.
The site is provided "as is" and "as available." Serapis disclaims all warranties, express or implied, including merchantability, fitness for a particular purpose, non-infringement, and any warranty arising from course of dealing or trade usage, to the maximum extent permitted by law.
To the maximum extent permitted by law, Serapis Architecture LLC, its members, officers, employees, and agents shall not be liable for any indirect, incidental, special, consequential, or punitive damages arising out of or related to your use of, or inability to use, this site, even if Serapis has been advised of the possibility of such damages.
These Terms are governed by the laws of the State of Kansas, without regard to its conflict-of-laws principles. Exclusive venue for any dispute arising out of these Terms or the site lies in the state or federal courts located in Wyandotte County, Kansas, and you consent to that venue. Nothing in this section limits the jurisdiction of the United States Government in matters arising under federal law or a federal contract.
We may update these Terms by posting a revised version with a new effective date. Continued use after a posted change constitutes acceptance of the change.
Questions about these Terms: legal@serapis-architecture.com.
This site does not use third-party analytics, advertising cookies, social-media trackers, retargeting pixels, or device-fingerprinting techniques. We do not load any third-party JavaScript for the purpose of tracking your activity.
Our hosting provider (Cloudflare) may set strictly necessary cookies to support site security, bot mitigation, and performance. These are not used to identify you across other websites and are documented in Cloudflare's own published cookie policy.
The site loads display fonts (Inter and Syne) from the Google Fonts content-delivery network. Google's processing of font requests is governed by Google's privacy policy. If your network blocks third-party font requests, the site falls back to a system font stack with no loss of functionality.
If we introduce any form of visitor analytics, we will (a) use a privacy-respecting self-hosted tool (no third-party trackers); (b) update this notice with the effective date of the change; and (c) where required by applicable law, present a consent mechanism before collection begins.
Serapis Architecture is committed to designing digital experiences that are usable by everyone, including users of assistive technologies. We work toward conformance with the Web Content Accessibility Guidelines (WCAG) 2.2 Level AA and the standards set forth in Section 508 of the Rehabilitation Act of 1973.
This site (v1.0) was authored with semantic HTML, keyboard-accessible navigation, sufficient contrast, and scalable type. We are aware that some interactive elements may not yet meet every Level AA success criterion; remediation is in progress.
If you encounter an accessibility barrier on this site, please tell us so we can fix it. Email accessibility@serapis-architecture.com with the page URL, the issue you encountered, and the assistive technology and browser you were using.
If you need information from this site in an alternative format, contact us at the address above and we will work with you to provide it.