Harbor Insurance · the handoff ← back to the brief

What you inherit on day one.

I have owned this through discovery and the decision about what was worth building. This is the point where it stops being mine. What follows is what a founding team picks up, what is already settled so nobody argues against it, what is still open and who owns each one — and the conditions under which we stop.

The test of this page: a team that has never met me can start on Monday without a meeting.
01

The state of it.

What exists · what does not · stated in that order

A tested idea, a plan, and nothing built yet.

69
observations behind it
9
things to get right first
6
jobs to cover
4
calls still to make
0
lines of code

Nothing here is built. That is not an apology — it is the honest description of a pre-build handoff, and the whole point of doing the discovery first is that the team that builds it does not also have to find out what to build. What is transmissible is the argument, the specification, the open queue and the owners.

What is specified and ready to build against

A typed data model — DiffLine / Refusal / DiffRecord. Thirteen acceptance criteria. Eight edge cases. A refusal enumeration frozen at five reasons. Six standard car coverages as what version one lines up against, with everything outside them refused by name rather than dropped.

Nine stages, each with an evidenced exit condition rather than an asserted one — the gate passes because a test passed, not because someone said it did.

What is named as a gap, by name

Eight gaps are listed explicitly in the architecture, four of them owned by someone other than an engineer. The legal question. The filing constraints. The manual-keying cost, which is recorded as pending rather than invented. Do not read the spec as complete; read §9 of it first.

And the largest one is not technical: nothing in the record establishes that supplying interpretation changes anyone's decision. That is the load-bearing assumption and the first thing the build is pointed at.

02

Pick a seat.

Four seats · what you own, what you cannot do, and your first two weeks

Gitwit assembles a founding team and keeps the studio underneath it. Harbor's specification carries six obligations, and a founding trio does not have six people — so they are mapped, and the mapping is the argument. Choose a seat and read what lands on your desk.

CEO

the one who can overrule anything

You own

  • Every exception. Nobody else can grant one.
  • Whether enough people will actually use it — we need about sixty in a month to learn anything.
  • The power to pull it — deliberately not held by the person who runs the screen.

You cannot

  • Overrule the screen. If it says stay where you are, it says stay where you are.
  • Move the bar so a number looks better than it is.
  • Count someone walking away as a loss in the first month.
On your desk

The number that tells you it is still honest

How many times the screen told someone to stay where they were, by week. It is the only number that cannot be argued with. If it reaches zero, the product has quietly become a sales page.

Nobody has been told to stay put for a week. Either the quotes genuinely got better, or someone tuned the screen. You are the only person who can find out, because you are the only person a conversion review is not leaning on.

Yours alone. Not the product lead’s — they are the one under pressure. Inert in this demonstration.

Why the rollback sits with you and not with product

The person who runs the diff is the person a conversion review puts under pressure. Authority to weaken their own surface under that pressure is the failure mode, not the control. No scoreboard rewards honesty here — including Harbor's own. This is the one structural decision in the handoff, and it is the one I would defend hardest.

Your first two weeks: answer the traffic question with real numbers, not a hope. Commit to the renewal diff in writing now, while Harbor has no book and the promise is free. Decide what you will tell a board when the best month looks like a conversion problem — because it will, and deciding it afterwards is deciding it under pressure.

Product lead

owns whether the screen is honest

You own

  • The go / no-go on all nine things above.
  • How often it tells people not to buy. If that reaches zero, it is your failure, not your win.
  • Deleting the comparisons of people who did not buy.

You cannot

  • Contact anyone the screen told to stay put. Not once.
  • Show “nothing needs to change” when there were words we could not read.
  • Let it give advice. It says what happens, never what to choose.
On your desk

Nine things that have to be true before traffic

Each one passes because a test passed, not because someone said so. You hold the go / no-go on every line.

  1. 1A lawyer has answered, in writing, or has written that they will notDone
  2. 2The shape of the data is fixed and testedDone
  3. 3Six coverages mapped by hand, one state, every row citing the document it came fromDone
  4. 4People can upload a policy summary, and confirm what we read before we compareDone
  5. 5The check that stops the screen giving advice runs on every request — if it stops, nothing showsIn progress
  6. 6“Nothing here needs to change” goes all the way through, before any real person sees itWaiting on 5
  7. 7Anyone told to stay put is never contacted again. Tested, not promisedWaiting on 6
  8. 8All seven deploy checks greenWaiting on 7
  9. 9Counting switched on, and the total published weekly from day oneWaiting on 8

Stage 6 is the one people skip. A “stay where you are” answer that was never run end to end before launch is an answer that never runs at all.

Your first two weeks: the schema and the blocked construction, then the null path through production before any traffic touches it. The order matters — a null path retrofitted after launch is a null path that never runs. Publish the denominator weekly from day one, while it is still embarrassing.

VP Engineering

owns what ships and what it costs

You own

  • How a policy gets in — upload, photo, and what happens when the photo cannot be read.
  • The two automatic checks that run on every release.
  • Typing documents in by hand — capped at one in ten, and it slows down past that.

You cannot

  • Ship without the check that stops it giving advice. If that check stops, nothing shows at all.
  • Let anyone delete from the do-not-contact list.
  • Treat a check as something to eyeball. Every check writes a result every time, pass or fail.
On your desk

What runs on every deploy

Seven checks. They write a result whether they pass or fail, so a silent skip is impossible. Nothing ships on a green that nobody looked at.

  • The advice check is in the request pathpass
  • “Nothing needs to change” renders correctlypass
  • No one on the do-not-contact list can be contactedpass
  • Comparisons for people who did not buy are deleted0 left
  • Typed in by hand, this week8.1% · cap 10%
  • Photo unreadable → falls back cleanlypass
  • Terms we could not place are named, never droppedpass

The one at 8.1% is the one to watch. It is people keying documents by hand because the photo could not be read. At 10% it throttles — on purpose, so the cost surfaces early instead of at scale.

Your first two weeks: ingest and the confirmation step, then the lint fail-closed in the request path. Wire the gates before the features. The first thing to measure is not whether the diff works — it is whether anyone will hand over a declarations page at all. Instrument that before anything else, because if the answer is no, the rest does not matter.

The studio

reads the words nobody else can

You own

  • The weekly list of words on real policies that we could not match to anything we compare.
  • Which words the screen is never allowed to use.
  • Counsel, before anything is built.

You cannot

  • Waive the rule that stops it giving advice. Not for a launch date.
  • Let a word we could not match disappear quietly instead of being named.
On your desk

This week’s queue

Words that appeared on someone’s real policy that we could not match to any of the six things we compare. They are shown to the customer by name, never quietly dropped. Your job is to rule on each one.

  • “Loss of Use”seen 14×Not one of the six. Say so and move on.
  • “OEM Parts Endorsement”seen 9×Needs your ruling
  • “Diminishing Deductible”seen 6×Needs your ruling
  • “Accident Forgiveness”seen 5×Affects price, not cover. Named, not compared.
  • “Form A264”seen 31×A form number with no plain meaning. Shown as unread.

Thirty-one people were handed a document that changes their cover and names it only as “A264”. We cannot read it either — but we can say so, which is more than the document does.

Why these two sit with the studio and not the trio: they are specialist, low-volume and continuous — exactly the functions a three-person founding team cannot justify hiring for in month one and cannot safely skip either. This is the concrete answer to what studio support is for. It is not encouragement. It is holding two obligations the team would otherwise drop.

03

Settled, and open.

The first list is not for reopening · the second has your name on it

A handoff that hands over every question hands over nothing. These seven are decided. Each was argued, each has a reason on the record, and the reason is available — but the decision is not a conversation any more. Reopen one only with evidence that did not exist when it was made.

SettledBecause
The moment is bind, not quote requestThe quote request is the link every competitor is also optimizing. The inversion happens after it.
The surface may return “stay where you are”A comparison that has never advised against its owner is a sales tool. This is the product, not a concession.
Refusal by printed name, never a silent dropNaming what cannot be compared is interpretation. Pretending it was compared is the industry's current behavior.
Six coverages, one state, matched by hand firstThe first cohort is done by hand so the mapping table is built from real documents rather than assumptions.
We check whether people will hand over the document at all, before anything elseThe whole idea depends on people doing something first — finding a document. Test that before testing anything else.
No recommendation, ever — consequence onlyRecommending a coverage level to a named person is a licensed activity. The line is hard and it is not a design preference.
Non-binding records are ephemeralHolding a competitor's coverage detail on someone who did not buy is a liability with no upside. It is destroyed, and a canary checks that it was.

Open — and each one has an owner

An open decision is not a gap. It is a decision whose owner has not made it yet, and the owner is named.

Is the nine-question interview lawful inside a quote flow? counsel

One call to an insurance lawyer. It is off the shipping path — version one runs on the policy summary alone and consumes no interview output — so it gates a future surface rather than this one. It is still owed before Harbor builds anything that asks a buyer nine questions.

Where does the advice line actually sit? counsel

Every output is a statement of consequence, never of preference — that is resolved by construction. The residual is adjacency: an interpretation surface sitting next to a recommendation. The conservative reading is in force and ships regardless of the answer. The answer can only loosen it, never tighten it.

Can Harbor produce sixty qualifying shoppers in thirty days? CEO

Below about sixty people, the test reports not enough people yet — neither pass nor fail. An insurer with no customers may simply not produce that traffic, and the correct response is to report it rather than to lower the bar until a number appears. Did not run is a real and informative outcome about Harbor's traffic, and it should be presented as one.

What does manual keying actually cost? pending

Recorded as pending rather than invented. The 10% cap and the throttle exist so the answer is discovered under control instead of at scale. The first cohort produces the number; nobody should estimate it before then.

04

What would make us stop.

In order · the cheapest disconfirmation runs first

01

Nobody hands over the policy summary

Measured before anything else. If shoppers will not produce the document, the intervention is dead regardless of how good the comparison is. This is the cheapest thing to learn and it is learned first.

02

The intervals overlap

Among shoppers shown a material difference, against a no-diff control. Denominator, share and interval — never a bare number. If they overlap, the mechanism did not operate.

03

The null count goes to zero and nobody notices

Not a product failure — an organizational one. It means the surface stopped being allowed to lose a sale. The canary exists because this failure is silent by nature.

And the one I could not resolve

This product succeeds by losing sales, and nothing in its design protects it. The two defences on the table — a public written commitment made before Harbor has a book, and a null count visible in production — are tripwires, not mechanisms. They make the killing detectable. They do not prevent it. I am handing this over unresolved and marked, because handing it over quietly is how it gets killed in month seven by someone who never knew it was load-bearing.

05

When this handoff is complete.

One condition

When I am not required.

Not when the documents are read. Not when the meeting happens. The handoff is complete the first time this team makes a decision I would have made, without asking me, and gets it right for the reason on the record rather than by coincidence.

Everything above is built backwards from that. The settled list exists so nobody has to ask me what was decided. The open list has owners so nobody has to ask me who decides. The stop conditions are numeric so nobody has to ask me whether it is working. If any of those three sends someone back to me, that part of the page has failed and I would rather fix it now than be the dependency.

The one thing I would say out loud rather than write: the load-bearing assumption of all of this is untested, and the build is pointed at it deliberately. If it fails, the record says where to go next — the claim, not the purchase. Both people in the record who moved of their own accord moved over how a claim was handled. That is a different company, and it is the honest second door.