Regulatory updates are written for lawyers, not engineers. Mereth reads the circular, maps it to your stack, and hands your team something they can actually act on.
Nobody at your company actually knows what a new RBI circular means for the codebase. Legal sends a summary. Engineering reads it, shrugs, and either builds something unnecessary or files it away. RBI, SEBI, CERT-In — each regulator has its own format, its own cadence, its own version of RBI/2023-24/110 Circular drops, please comply.
So you pay for legal memos. They arrive six weeks later, use words like "data fiduciary obligations," and end with "consult your technical team." Your technical team is waiting on you.
What you get is technical debt disguised as compliance work — months spent over-engineering a clause that doesn't apply to you, or quietly missing DPDP Rule 13(4) because it was buried on page 47 of the amendment.
Mereth is the translator. We read the primary source, map it to your stack, and give your engineers something concrete to work from.
We watch 4,000+ legislative sources. The moment SEBI/HO/IMD/POD2 publishes, we have it.
We check the change against what you actually run — your services, what customer data you hold, and where you operate.
A Slack message or Jira ticket lands in your queue. Affected service, deadline, exact clause — all there.
RBI has revised Master Direction on Outsourcing of IT Services. Specifically, Section 6.4 now requires board-level oversight for non-critical vendors.
Vanta and Drata help you collect evidence once you know what compliance looks like. Mereth is for figuring that out in the first place. Different problem, different tool.
rbi-master-directive-11.json
Impact Analysis:
Critical match found in core-ledger-svc. Action required by EOW.
Regulatory Citations
No. We read the primary source and tell you what it means for your code. The question "does this actually create liability?" still needs a lawyer. We just give you something concrete to bring to that conversation.
Vanta and Drata help you prove you're compliant. Mereth helps you figure out what you need to be compliant with. By the time Vanta needs evidence, we've already told you what changed and which team owns it.
Right now: Indian fintech (RBI, SEBI, NPCI) and data privacy (DPDP, CERT-In). GDPR and CCPA are next — mostly because our waitlist keeps asking for it.
Know what a circular means for your codebase before the sprint starts, not after the audit does.