I'm the founder before building CertShield I assumed most firms had some system, but nearly everyone I talk to is either using a spreadsheet, a folder of PDFs, or honestly nothing until an audit or a claim forces the issue. Curious what this community does: do you check endorsement forms (CG 20 10 / 20 37), or just the cert's front page and expiration dates? And has a lapsed vendor policy ever actually bitten you? Building this in the open, so honest answers including "your product isn't needed" genuinely help. And if you want to test us: free 3-certificate audit, 24-hour turnaround, no strings.