Holdsum pulls every brokerage account into one always-current portfolio, then puts AI to work researching opportunities, reading the news, and surfacing what to do next — less tab-switching, more autopilot.
It's running today for a small private group while we finish the production build. Public sign-ups open when that's done.
Copy the address and email us — we'll be in touch when the beta opens up.
Holdsum aggregates, not just lists — every number is computed live across all of your connected accounts.
Stocks, ETFs, options, and cash from every connected account roll up into a single aggregated view — grouped by ticker, with a per-brokerage breakdown one click away.
Tell Holdsum what you care about — growth, dividends, sector bets — and AI does the legwork: scanning opportunities, flagging risk in positions you already hold, and recommending what to do next.
Expand any position for its latest news and analyst ratings side by side — no more juggling five tabs to research one stock.
Quotes refresh automatically while you watch, with a built-in deviation guard that falls back to your last synced institution price if a quote ever looks wrong.
An interactive chart of your total portfolio value, zoomable from a single day out to your full history.
Brokerage credentials are encrypted at rest and your brokerage login never touches our servers — accounts connect through Plaid's own secure flow. Every account is fully isolated.
Holdsum is a working product in private beta, not a landing page waiting on a build. Here's what runs today and what's between now and public sign-ups.
Holdsum handles non-public personal and financial information — account balances, holdings, and identifying details. This is the production architecture we're deploying to protect it.
The API and the background sync run as containers — no server to patch, log into, or forget about.
Encrypted at rest inside a network-isolated VPC, with no public database access from the internet.
The dashboard ships as static assets served from the edge, private-bucket origin only.
One managed front door to the API, so nothing in the application tier is directly reachable.
Runs the periodic holdings sync on a schedule instead of keeping an always-on worker alive.
Encryption keys and provider credentials managed by AWS, not by application environment variables.
Centralized audit logging across every service — a full trail of who accessed what, and when.
Managed rule coverage at the edge, and least-privilege roles in place of one hand-managed server.
Everything above is infrastructure-as-code (AWS CDK) — reviewable, repeatable, and deployed the same way every time.
We're adding private-beta accounts a few at a time while the production build finishes.
Copy the address and email us — we'll be in touch when the beta opens up.