For Florida families
The estate desk: after delivery, what was downloaded, printed, signed, kept and funded — and a check for any file you hold
self-help lane · Deterministic — no model call
Current availability
ShippedConfigured and enabled: signed in on the self-help service (a firm's client keeps the firm's own signing and funding record).
- Where it lives
- /dashboard/desk · /api/desk · /api/desk/mark · /api/desk/copy · /api/desk/reminder · /api/desk/helper · /api/desk/helper-invite
- What unlocks it
- the buyer, for plans and documents delivered on the self-help service; a desk helper only through the buyer's explicit allowance
Status is evaluated against this deployment's configuration by the capability-status service at build time; the catalogue's facts were last reviewed on the date shown.
Capabilities
- ShippedPer delivered version and per document, five distinct steps: downloaded (observed from the platform's own download record), printed, signed and — for the trust — funded (the buyer's own marks, each a new entry with the history kept), and a signed copy received.
- ShippedA signed copy is the buyer's own upload, past its safety check, recorded with its SHA-256 as RECEIVED — never as checked: nobody examines it.
- ShippedThe file check computes a file's SHA-256 in the browser and compares it with the delivery's own hashes — nothing is uploaded; a match proves the file is one that was delivered, nothing about whether it is valid.
- ShippedNeutral reminders: a fixed kind and a date, sent in the language they were set in — the e-mail names no plan, person or figure.
- ShippedHelpers the buyer invites read the checklist only once the buyer allows it — never the documents, files or reminders — and the allowance can be withdrawn at any time.
- ShippedThe hand-off to a law firm is the existing consented transfer.
Limits
- The desk keeps what the buyer recorded and what the platform observed; it never confirms that a document was validly signed or witnessed, or that an asset was funded.
- An archived plan's desk is read-only: nothing new is recorded; cancelling a reminder and stopping a helper's access still work.
- The self-help service only: a firm's client keeps the firm's own signing and funding record.
What EstateDraftFL refuses
| Reason code | HTTP | What it means |
|---|---|---|
| unauthorized | 401 | The desk is read and changed by a signed-in person only. |
| not-on-this-service | 404 | A firm's client keeps the firm's own signing and funding record; the desk is the self-help service's. |
| desk_version_not_found | 404 | That document is not on the buyer's desk (another person's, or a firm's version). |
| desk_document_not_in_version | 422 | That document is not part of this version. |
| desk_step_invalid | 422 | That step is not one the desk records. |
| desk_funding_is_the_trust | 422 | Funding applies to the trust only. |
| desk_copy_not_found | 404 | That upload is not the buyer's own on this plan. |
| desk_copy_not_clean | 409 | The upload has not cleared its safety scan; nothing was recorded. |
| desk_copy_unhashed | 409 | The upload has no fingerprint yet; nothing was recorded. |
| desk_matter_not_found | 404 | That plan is not on the buyer's desk. |
| desk_reminder_kind_invalid | 422 | A reminder is one of the fixed kinds. |
| desk_reminder_date_invalid | 422 | A reminder's date runs from today up to five years ahead. |
| desk_reminder_locale_invalid | 422 | That language is not available for reminders. |
| desk_reminders_full | 409 | A plan holds twenty open reminders at most. |
| desk_reminder_not_open | 404 | That reminder is already sent or cancelled. |
| desk_helper_not_found | 404 | That helper has not accepted an invitation to this plan. |
| already-invited | 409 | That person is already invited to this desk. |
| matter_archived | 409 | The plan is archived: its desk can be read, not changed. |
| kept | 409 | Desk records are kept; none is edited or deleted. |
| rate-limited | 429 | Too many desk requests from one account within the hour; the Retry-After header names the wait. |
| partly-ended | 503 | The helper can no longer read the desk, but closing their invitation did not go through; removing them again finishes it. |
| unavailable | 503 | The desk could not be read or saved just now — never shown as empty; nothing changed. |
Evidence
- supabase/migrations/20261002140000_phase16_estate_desk.sql
- src/lib/desk/view.ts
- src/lib/desk/read.ts
- src/lib/desk/route.ts
- src/lib/desk/reminders.ts
- src/lib/desk/reminder-copy.ts
- src/components/desk/EstateDesk.tsx
- src/components/desk/DeskItemCard.tsx
- src/components/desk/DeskOwnerPanels.tsx
- scripts/rls-negative-suite.sql
- src/lib/master-plan-phase16-desk.test.ts
Last reviewed 2026-10-02