SHIPPED
- →v2 frontend live with horological luxury aesthetic
- →Full 14-point SaaS baseline: security headers (CSP, HSTS, XFO, XCTO, Referrer, Permissions)
- →PWA manifest + favicon set + theme-color
- →Legal pages (/privacy /terms /cookies /data-request)
- →OG image generator (Vercel OG)
- →Organization + SoftwareApplication JSON-LD
- →Dynamic /sitemap.xml + /robots.txt (respects GPTBot/ClaudeBot/PerplexityBot)
- →12 React Email templates wired to Resend
- →Sentry error tracking (activates on SENTRY_DSN)
- →Typed analytics (EVENTS.md enforced)
- →Cookie consent banner (EU/CCPA)
- →Cloudflare Turnstile component
- →Rate limiting middleware (activates on Upstash key)
- →Custom 404 + 500 pages, skip-to-content, WCAG AA contrast