{
  "serviceIdentification": {
    "fedRampPackageId": "meterbox",
    "providerName": "Meterbox Inc.",
    "serviceName": "Meterbox",
    "serviceAcronym": "MTBX",
    "serviceDescription": "Meterbox replaces fragmented monetization infrastructure with one programmable platform, built around a single immutable financial ledger. Every customer interaction becomes one financial event; everything else is projected from it. Instead of synchronizing systems, we derive different business views from one authoritative source — which reduces operational complexity while increasing financial correctness. Meterbox emphasizes customer data isolation, privacy by default, comprehensive auditability, strong authentication and access controls, flexible deployment for regulated or sovereign environments, and support for privacy and data-rights requirements. The platform is being built toward major enterprise security and compliance standards, while transparently documenting its current certifications, roadmap, security practices, third-party providers, accessibility efforts, and vulnerability-reporting processes.",
    "certificationType": "20x",
    "website": "https://meterbox.ai/",
    "logo": "https://meterbox.ai/assets/logo-light-sqtdhpHL.png"
  },
  "serviceProperties": {
    "serviceType": ["SaaS", "PaaS"],
    "deploymentModel": "Government-Only Cloud",
    "businessCategory": ["Accounting", "Finance", "Customer Relations Management (CRM)"],
    "trustCenter": {
      "repositoryType": ["Trust Center"],
      "url": "https://meterbox.ai/trust#fedramp",
      "repositoryDescription": "Meterbox Trust Center — security architecture, NIST 800-53 control mapping, compliance framework status, subprocessor list, privacy/DPA terms, and the vulnerability disclosure channel. Public, no login required.",
      "authenticationRequired": false
    },
    "secureConfigurationGuidance": {
      "repositoryType": ["Secure Configuration Guidance"],
      "url": "https://meterbox.ai/secure-configuration-guide",
      "repositoryDescription": "Meterbox Secure Configuration Guide — instructions for securely provisioning, configuring, operating, and decommissioning top-level administrative (owner) and privileged (admin) accounts, and the security-relevant settings only those roles can change. Public, no login required.",
      "authenticationRequired": false
    },
    "nextOngoingCertificationReportDate": "2026-12-01"
  },
  "contactInformation": [
    {
      "contactType": "Primary",
      "contactName": "Majid Mallis",
      "contactEmail": "contact@meterbox.ai",
      "contactPhone": "415-490-6595"
    },
    {
      "contactType": "Security",
      "contactName": "Meterbox Security Team",
      "contactEmail": "contact@meterbox.ai",
      "contactPhone": "415-490-6595"
    },
    {
      "contactType": "Sales",
      "contactName": "Meterbox Sales",
      "contactEmail": "contact@meterbox.ai",
      "contactPhone": "415-490-6595"
    }
  ],
  "thirdPartyInformationResources": {
    "certified": [],
    "nonCertified": [
      {
        "name": "Google Kubernetes Engine",
        "provider": "Google Cloud",
        "website": "https://cloud.google.com/kubernetes-engine",
        "useCase": "Underlying container orchestration platform each single-tenant Meterbox control plane and per-org data plane runs on."
      },
      {
        "name": "Stripe",
        "provider": "Stripe, Inc.",
        "website": "https://stripe.com/",
        "useCase": "Optional, tenant-opt-in payment collection subprocessor for invoice charges. Not used for any Meterbox-internal data storage."
      },
      {
        "name": "Resend",
        "provider": "Resend",
        "website": "https://resend.com/",
        "useCase": "Optional, tenant-configurable transactional email delivery (lifecycle emails, security alerts)."
      }
    ]
  }
}
