All tools

Legal

Legal Readiness Checklist

Self-audit 16 founder-stage legal essentials — incorporation, vesting, IP, contracts, IP, compliance. Copy or download your status.

Free · no signup required · runs entirely in your browser

Educational only — not legal advice.

Use this as a self-audit checklist. Decisions on incorporation, contracts, and compliance need a qualified lawyer in your jurisdiction.

Progress

0%
Incorporated in a sensible jurisdiction

Delaware C-corp (US tech raise), UK Ltd (UK), Pte Ltd (SG). Don't optimise for tax savings before product-market fit.

Founder agreement signed

Equity split, vesting (4-year, 1-year cliff is standard), IP assignment, what happens if a founder leaves. Verbal deals are time bombs.

Founder shares on a vesting schedule

Even if you're solo. Investors will require it; cleaner to start vesting from day 1 than retro-fit.

Pre-formation IP assigned to the company

Anything built before incorporation needs a written assignment, including code, designs, and copy.

Contractor / 1099 agreements in place

Every contractor signs a work-for-hire + IP assignment. Verbal arrangements leak ownership to the contractor.

Employee offer letters + IP/NDA

Even for advisors. Especially for ex-employees of a competitor — get the assignment clear in writing.

Every share issuance documented by the board

Resolutions, share certificates, 83(b) elections (US) filed within 30 days. Missed 83(b)s create tax problems for the holder.

Cap table is accurate and exported

Carta / Pulley / Capdesk if past seed; a clean spreadsheet otherwise. Includes options, SAFEs, convertible notes, side letters.

Trademark search done on name + key product

Cheap to check; expensive to lose. Search USPTO (US) / IPO (UK) / EUIPO (EU) for direct conflicts.

Domain + brand assets owned by the company, not a personal account

Transfer registrar + DNS + social handles to a company account. Personal accounts lapse.

Public terms + privacy policy live and current

Required if you collect any user data. Generic templates work pre-revenue; refresh before paid customers.

Standard customer contract (MSA + DPA where relevant)

MSA for B2B; click-through ToS for self-serve. DPA mandatory under GDPR if you process EU/UK personal data.

Subprocessor list maintained

Every third-party service that touches user data (Stripe, Resend, analytics, AI vendors). Customers will diligence this.

Sector-specific compliance reviewed

Health (HIPAA), finance (PCI/AML), kids (COPPA), accessibility (WCAG/ADA). Different rules for different markets.

General liability + E&O insurance

Cheap (~$500-1500/yr) and frequently required by enterprise customers. Cyber insurance worth quoting once you handle real data.

Startup-experienced lawyer identified

Not 'a lawyer' — one who handles SAFEs, term sheets, and Delaware Cs every week. Cohorts: Cooley, Goodwin, Orrick (US); Mishcon, Taylor Wessing (UK).

Related resources

Related templates

Related glossary terms