Security & Controls

This page describes the technical and operational controls CoastFIRE HQ operates, in functional terms. It is not a certification, an audit opinion, an equivalency claim to any bank or regulated institution, or a guarantee that assets are always protected.

Access controls: authenticated sessions, role-scoped permissions, and row-level authorisation on client records. Staff actions against client records are written to an append-only activity log.

Transport and storage: traffic is served over TLS. Client documents are stored in access-controlled buckets and served through short-lived signed URLs rather than public links.

Account verification: identity and document verification steps are recorded per account, with reviewer notes retained alongside each submission.

Incident and change handling: production changes and administrative overrides are logged with the acting operator and timestamp so any action can be reconstructed after the fact.

CoastFIRE Headquarters LLC is a California limited liability company. California Secretary of State File No. B20250395112 is a business-entity filing identifier and is not a financial-services licence, registration, or authorisation.

Published verification materials substantiate the California business-entity filing and the specific third-party institutions identified in client/account documentation. Those materials do not establish CoastFIRE Headquarters LLC as an SEC-registered investment adviser, broker-dealer, bank, or state/federally chartered trust company.