Delve - Fake Compliance as a Service - Part I

How Delve managed to falsely convince hundreds of customers they were compliant and then lied about it when exposed and called out

DeepDelver

This was such as interesting read, but I found this link via LinkedIn rather than hackernews.

I would have expected this to be somewhere at the top right now given how deep the article digs and evidence seems legit.

I think it may be getting (intentionally?) suppressed from the homepage. Given this is a YCombinator website, I wouldn't rule that out.

Regardless, it's been an ongoing issue. I know a few involved companies — it takes basically 5 days to get a SOC 2 Type 2 report through Delve. And, of course, they market this way too: "SOC 2 in days". Unbelievable.

Surprised/not surprised that this is getting buried from the homepage
It got downweighted by HN's voting ring detector. Mods didn't touch it, except to place the story on the frontpage once we knew it existed.