---
title: "AuditBadger feature catalog"
canonical: "https://auditbadger.com/de/funktionen/"
last-updated: "2026-09-05"
---

# AuditBadger feature catalog

AuditBadger is one platform for compliance, evidence, risk, incident, vendor, asset, training, and buyer trust workflows. This page is the index of every feature with a one-line description and a link to the dedicated page.

## At-a-glance

- **Pricing:** $250/Monat flat — every feature below is included
- **Setup:** typically one week
- **Frameworks pre-loaded:** SOC 2 (Type I/II) and ISO 27001:2022
- **Integrations:** AWS, GCP, Azure, DigitalOcean, Scaleway, GitHub, Cloudflare, Linear, Shortcut, Slack, Google Workspace, and FleetDM

## Core compliance

| Feature | Description | Page |
|---|---|---|
| **Compliance Management** | SOC 2 + ISO 27001 control hierarchy, ownership, evidence linkage, audit history | [/features/compliance-management](/features/compliance-management) |
| **Automated Evidence Collection** | Connect AWS, GCP, Azure, DigitalOcean, Scaleway, GitHub, Cloudflare, Linear, Shortcut, Slack, Google Workspace, and FleetDM; recurring evidence collected with version control and expiration tracking | [/features/automated-evidence-collection](/features/automated-evidence-collection) |
| **AI Compliance Assistant** | Stack-aware policy drafting, control explanations, document adequacy verification, gap identification | [/features/ai-compliance-assistant](/features/ai-compliance-assistant) |
| **Risk Assessment** | Multi-factor risk scoring, treatment planning (accept / mitigate / transfer / avoid), risk-to-control mapping, audit-ready history | [/features/risk-assessment](/features/risk-assessment) |

## Operational workflows

| Feature | Description | Page |
|---|---|---|
| **Incident Management** | Incident register, response records, severity classification, post-incident review, regulatory breach workflows, CAPA | [/features/incident-management](/features/incident-management) |
| **Business Continuity** | BCP plans, RTO/RPO tracking, test records, crisis communication templates | [/features/business-continuity](/features/business-continuity) |
| **Assessment Management** | Reusable security questionnaire answers, response tracking, evidence requests, review workflows | [/features/assessment-management](/features/assessment-management) |
| **Vendor Assessment** | Vendor register, risk tiering, security questionnaires, vendor portal, evidence and contract tracking | [/features/vendor-assessment](/features/vendor-assessment) |
| **Asset Management** | Asset inventory, ownership, classification, lifecycle from purchase to retirement, depreciation, maintenance | [/features/asset-management](/features/asset-management) |

## Buyer trust and enablement

| Feature | Description | Page |
|---|---|---|
| **Trust Center** | Public compliance portal at your custom domain — share certifications, posture, sub-processors live with prospects | [/features/trust-center](/features/trust-center) |
| **Training & Awareness** | AI converts your policies into employee training courses; auto-enrollment, completion tracking, audit-ready evidence | [/features/training-awareness](/features/training-awareness) |

## Why it feels different

- **Plain-language guidance** — every control explained in operator language, not auditor-speak
- **Unified operational surface** — risks, incidents, vendors, evidence, policies, and buyer trust in one workspace
- **AI as co-pilot, not autopilot** — humans stay in the decision loop on control design, risk treatment, and policy approval
- **One flat price** — no per-seat fees, no module unlocks, no annual commitment
- **Founder-led support** — direct shared Slack with the team building the product

## Typical first week

1. **Stand up the workspace** — configure org, define ownership, choose framework(s)
2. **Connect signals** — link AWS / GCP / Azure / DigitalOcean / Scaleway / GitHub / Cloudflare so recurring evidence stops being manual
3. **Ship buyer-facing trust** — publish the Trust Center for prospects while the audit prep continues internally

## Common questions

### Do I need separate tools for SOC 2, ISO 27001, evidence collection, and trust center?
No. AuditBadger is one platform for all of these.

### Can I start with one framework and add another later?
Yes. Evidence, controls, and policies compound across frameworks rather than resetting.

### How much implementation work is required?
Roughly one week for the core system. Most of the work is aligning owners and connecting integrations.

### Is this built only for enterprise GRC teams?
No. It is designed for lean security teams, founders, and product-led startups that need enterprise credibility without enterprise overhead.

## Useful links

- Sign up: [auth.auditbadger.com/signup](https://auth.auditbadger.com/signup)
- Free policy generator (no signup): [/free-compliance-policies-generator](/free-compliance-policies-generator)
- SOC 2 deep dive: [/compliance/soc2](/compliance/soc2)
- ISO 27001 deep dive: [/compliance/iso27001](/compliance/iso27001)
- Pricing reference: [/pricing.md](/pricing.md)
- Contact: hello@auditbadger.com
