# Helm — Hub for Every Level of Management > Helm is one secure workspace where every level of management sees what they need: CRM and pipeline, projects and tasks, people and time off, finance, inventory and orders, docs and announcements, and an AI analyst grounded in the company's own data. Made by Mission Success Solutions, LLC. Website: https://helmsapp.com. Support: support@missionsuccesssolutions.com. ## What it is Business operating hub for small and mid-size companies. Helm is one secure workspace where every level of management sees what they need: CRM and pipeline, projects and tasks, people and time off, finance, inventory and orders, docs and announcements, and an AI analyst grounded in the company's own data. ## Who it is for - Small defense subcontractors (10 to 100 people) that need everyday business tools able to stand up to a NIST SP 800-171 / CMMC Level 2 assessment - Fractional COOs and consultancies running several client companies from one place with roles and an audit trail - Local service businesses that have outgrown spreadsheets and a shared inbox ## Modules - Command deck: Owner dashboard: open pipeline, receivables, spend, stock value, headcount, win rate, and a ranked needs-attention list of overdue invoices, late tasks, low stock, pending approvals, and stale deals. - CRM and pipeline: Accounts, contacts, deals on a stage board with weighted forecast, win rate, and stale-deal alerts. - Projects and tasks: Cross-project kanban, per-project progress, workload by person, due-this-week and overdue views. - People: Directory with roles and departments, time-off requests and approvals, out-of-office visibility, invitations and SCIM provisioning. - Finance: Invoices and expenses, receivables aging, six-month invoiced-versus-spent, expenses by category. - Inventory and orders: Stock on hand, reorder alerts, movements, sales orders, stock value. - Docs and announcements: Nested company wiki and announcements that land on every dashboard. - AI Ops: Ask questions like 'what should I focus on today' and get answers grounded only in the workspace's live records; rate-limited and logged. - Security settings: MFA enrollment, org-wide MFA policy, single sign-on, SCIM tokens, audit log with CSV export, API keys, integrations. ## Pricing 50,000 sats per workspace per 30 days. Unlimited members. Paid by Lightning invoice from inside the app. No card on file, no per-seat pricing. Unused days roll forward on renewal. Sign-up and a full sample-data tour are free before paying. ## Security and compliance - Multifactor authentication (TOTP with recovery codes) required for every member by default - Members join only by owner/admin invitation or SCIM provisioning from the customer's directory - Enterprise single sign-on via OpenID Connect to Microsoft Entra ID, Okta, OneLogin, Ping Identity, or any OIDC provider; SCIM 2.0 served by Helm - Adaptive step-up re-verification before sensitive actions - Append-only audit log covering authentication, authorization changes, billing, integrations, API use, and record changes, with CSV export - Server-side authorization on every request and tenant isolation on every record - Per-request Content Security Policy, HSTS, and hardened headers - Third-party OAuth tokens encrypted at rest with AES-256-GCM; webhooks from Stripe, Square, and HubSpot verified by HMAC signature - A NIST SP 800-171 Rev. 2 control mapping covering all 14 families, written to attach to a System Security Plan Helm is aligned with NIST SP 800-171 Rev. 2 practices and built with the technical controls a CMMC Level 2 environment expects from an application. Helm is not itself certified; CMMC certification is an assessment of the customer's organization by an authorized assessor. ## Integrations and API Connects to Stripe, Square, HubSpot. Customers generate scoped, rate-limited API keys; the OpenAPI 3.1 document is at /api/v1/openapi.json. ## Links - Home: https://helmsapp.com/ - About: https://helmsapp.com/about - Help and FAQ: https://helmsapp.com/help - Security and compliance: https://helmsapp.com/help/security - Sign up: https://helmsapp.com/signup - OpenAPI document: https://helmsapp.com/api/v1/openapi.json ## Frequently asked questions ### Getting started **Q: What is Helm?** Helm is the Hub for Every Level of Management: one workspace for CRM and pipeline, projects and tasks, people and time off, finance, inventory and orders, docs and announcements, and an AI analyst that answers from your own data. The front line sees their work, managers see boards and approvals, and owners see a command deck with pipeline, receivables, spend, stock value, and a ranked list of what needs attention. **Q: How do I see Helm with real-looking data?** Sign up, open the dashboard, and click "Load sample data". Every module fills with sample accounts, deals, projects, invoices, expenses, products, docs, and announcements. It only works while the workspace is empty, and everything it adds can be edited or deleted. **Q: How do my teammates join?** Members join only through an invitation from an owner or admin (People → Invite people). Each link works once, is tied to one email address, and expires after seven days. There is no open sign-up into an existing workspace. **Q: Which roles exist?** Owner, admin, and member. Owners manage roles and the MFA policy and can invite admins; admins can invite members, approve time off, post announcements, and review the audit log; members work in every module. ### Billing **Q: How much does Helm cost?** 50,000 sats per workspace per 30 days, with unlimited members. There is no per-seat pricing. **Q: How do I pay?** From Billing inside the app: create a Lightning invoice, pay it from any Lightning wallet, and the workspace unlocks as soon as the payment settles. Renewals stack onto the current period, so paying early never loses days. **Q: Is there a card option?** Not today. Payment is by Lightning invoice. If your company needs an invoice or card option, tell us; it shapes the roadmap. ### Security & compliance **Q: Is Helm CMMC certified?** No software product is. CMMC certification is an assessment of your organization. Helm is aligned with NIST SP 800-171 Rev. 2 practices and built with the technical controls a CMMC Level 2 environment expects from an application, and it ships with a control mapping you can attach to your System Security Plan. Our aim is to make sure your everyday tools are not the gap. **Q: Is multifactor authentication required?** New workspaces require MFA for every member by default. Members enrol with a standard authenticator app and receive single-use recovery codes. An owner can relax the policy after enrolling, but we recommend keeping it on. **Q: What gets logged?** Sign-ins, failed attempts, role changes, invitations, billing, AI questions, exports, and creates or status changes on business records are written to an append-only audit log. Owners and admins can filter it in Settings → Audit log and export it as CSV. **Q: How do I report a security issue?** Email support@missionsuccesssolutions.com with a description, the affected feature, steps to reproduce, and impact. Please do not post details publicly; allow a reasonable period for investigation and remediation. ### Data & privacy **Q: Is my data separated from other customers?** Yes. Every record is scoped to your organization on the server, and every referenced record is verified to belong to it before it is linked or changed. Cross-tenant isolation is covered by automated tests. **Q: Where is Helm hosted and how is it backed up?** On infrastructure with no inbound ports (ingress is through an encrypted tunnel), with nightly database backups. Self-hosted deployment is available for customers who require it. **Q: Does AI Ops send my data to the open internet?** AI Ops sends a short brief of your workspace figures to the model provider for each question and treats it strictly as data. Questions are rate-limited per user and per organization, and every question is recorded in the audit log.