saascode
project & workflow operations·run 236 · Jun 2026

Dorashelf

A two-sided DORA evidence exchange where technology vendors publish scoped claims and artifacts, regulated buyers assess coverage and generate review questions under their own risk policy.

Genesis score6.79/10
Make Dorashelf real.0/500
500 more votes and Dorashelf is authorized for build.
0%500 to authorize
Backing is the vote. When an idea crosses 500, we pull it into the build pipeline and ship it for real — the votes decide what gets built next, not an editor.
The case

Financial-sector buyers repeatedly request third-party ICT evidence, while vendors answer similar questionnaires with different terms and freshness. Dorashelf standardizes a submission and maps evidence candidates to a versioned DORA rule source, but a vendor claim is not verified fact, schema validation is not substantive control testing, evidence coverage is not compliance and a single health score would hide buyer-specific materiality. The safer product produces an evidence profile, gaps, provenance and RFP questions for buyer review, with vendor correction and appeal. The supplied scan supports a neutral exchange gap across cyber ratings, self-serve compliance and DORA point tools, but the buyer quartet is incomplete and the enforcement timing lacks primary text in the input.

Who pays — and why

ICT risk, procurement, compliance or resilience teams at regulated EU financial entities, plus software vendors answering their evidence requests; role, budget and current alternative remain incomplete.

What it unlocks
A reusable vendor evidence package with scope, source, freshness and withdrawal
Buyer-specific coverage and gap analysis without a universal compliance score
Traceable RFP questions and review dispositions tied to current rule authority
How Genesis scored it
6.79across seven criteria
tension 7temporal 8blindspot 5buyer 5leverage 8convergence 10why-not 7
10
Convergence

The source records two cross-references and two inbound connections before the grounded score.

8
Temporal window

The supplied secondary sources describe active DORA enforcement, subject to current primary-authority confirmation.

5
Buyer persona

Financial ICT-risk and vendor teams are implied, while role, size, budget and current alternative are not fully specified.

Why it scored well

The source supplies active DORA demand, multiple graph links, one verified interface and a confirmed gap between vendor-self-service, cyber ratings and a neutral evidence exchange.

What's holding it back

The buyer quartet is incomplete, primary regulatory authority is absent from the input, neutrality and validation require governance, one exchange can concentrate sensitive evidence and no structural incumbent cost is evidenced.

Signals detected4 sources crossed
SignalSupplied secondary compliance review

SignalSupplied product review

SignalSupplied competitor review

SignalSupplied standards review

Direction briefdorashelf.md
dorashelf.md
Want this pointed at your vertical?Point Genesis at your own market and constraints — it invents adjacent, fork-ready ideas, private to you before they hit the public feed.

Discussion

?

No comments yet — be the first to weigh in.