Your AI receptionist is answering calls. Your booking system is texting customers. Can you prove any of it is compliant? The free Grandeza Score audits your entire intake against 18 TCPA controls — in 3 minutes, with zero code access.
Free · 3-minute scan · No credit card · No developer needed
Built by an auditor who has worked across
No software to install. No developer to schedule. If you know what tools your shop uses to call and text customers, you'll finish before your coffee gets cold.

Answer guided questions about how your shop captures consent, sends texts, and handles calls — including any AI phone agent answering for you.

Your intake is graded against 18 controls drawn from the TCPA, FCC rules, and the live class-action landscape. One number tells you where you stand.

A plain-English punch list of every gap that exposes you to statutory damages, ordered by risk. Fix it yourself, hand it to your vendor, or let us handle it.
The 18 controls fall into five groups. Miss any one and you're carrying uninsured legal risk on every message your systems send.

Does your AI identify itself as AI the moment a conversation starts — and does every recorded call carry the disclosure state law requires before you hit record? Two controls, one theme: the customer has to know who, or what, they're talking to.

What you collect, how long you keep it, who else sees it, and how easy it is to opt out — four controls covering consent language under Nevada's data privacy statute, data minimization, third-party sharing, and a working opt-out path.

The controls that decide whether a text or call is legal to send at all: TCPA-compliant outbound practices, a real scrub against the federal registry and your own internal do-not-contact list, and a send window computed off the recipient's clock — not yours.

Can a human step in when the AI gets it wrong? Does the system stay inside its stated scope, and has anyone checked its outputs for bias? Three controls that keep the AI answerable to a person, not just a policy.

The paperwork that proves the rest is real: a written employee AI use policy, signed data processing agreements with every vendor, an incident response plan, a complete audit trail, an annual review cadence, and insurance that actually covers an AI claim.
Kai Cogmon · Founder, Grandeza
Kai Cogmon spent 15 years in compliance and law enforcement: an investigator with JPO Investigations, then compliance management at Whirlpool, Nevada Homes for Youth, and Nevada State Behavioral Health — across PCI DSS, HIPAA, OSHA, and TCPA.
He founded Grandeza to audit the AI that service businesses use to talk to customers: 18 controls, a 0–100 score, and exactly where you're exposed.
$500 to $1,500 per message × every message you sent.
TCPA statutory damages don't care about your intent, and there's no cap. A 2,000-message appointment-reminder campaign sent during quiet hours isn't a slap on the wrist — it's potential seven-figure exposure. That's why plaintiffs' firms filed 2,628 TCPA lawsuits in 2025, up 60% over 2024.
Litigation figures: CompliancePoint TCPA Litigation Trends 2025.
No legalese, no scare-quotes, no 40-page PDF you'll never read. Just your score and what to do about it.
All 18 controls are drawn from the TCPA statute, current FCC rules, and active litigation patterns — and the methodology is reviewed by TCPA counsel.
We never touch your systems to score them. The scan works from how your intake is configured and operated — not from your source code or your CRM logins.
The average first-time score. Most contractors have never audited their intake — which is exactly why plaintiffs' firms target the trades.
Every day your intake runs unchecked, it's sending messages you may not be able to defend. Find out where you stand — free, private, and in plain English.
Start my free scanFree TCPA risk assessment · 18 controls · 0–100 score · No code access