Security & Controls
This page describes the technical and operational controls CoastFIRE HQ operates, in functional terms. It is not a certification, an audit opinion, an equivalency claim to any bank or regulated institution, or a guarantee that assets are always protected.
Access controls: authenticated sessions, role-scoped permissions, and row-level authorisation on client records. Staff actions against client records are written to an append-only activity log.
Transport and storage: traffic is served over TLS. Client documents are stored in access-controlled buckets and served through short-lived signed URLs rather than public links.
Account verification: identity and document verification steps are recorded per account, with reviewer notes retained alongside each submission.
Incident and change handling: production changes and administrative overrides are logged with the acting operator and timestamp so any action can be reconstructed after the fact.
CoastFIRE Headquarters LLC is a California limited liability company. California Secretary of State File No. B20250395112 is a business-entity filing identifier and is not a financial-services licence, registration, or authorisation.
Published verification materials substantiate the California business-entity filing and the specific third-party institutions identified in client/account documentation. Those materials do not establish CoastFIRE Headquarters LLC as an SEC-registered investment adviser, broker-dealer, bank, or state/federally chartered trust company.