- Legal Billing Review & LEDES Invoice Analytics
Research for this cycle found no named independent production self-build of the review core; the prior 4 rested on an assumption of documented builds that the record (PNC buys with managed review, Onit benchmark, consultancy modules for unnamed clients) does not support.
- Legal Workflow Automation / No-Code Expert Systems
This cycle's research surfaced named in-house production builds on Power Platform, Copilot Studio and Retool (KONE, Unifi, SHL, Baker McKenzie, Power Digital) that the prior assessment did not have; the market did not change, the evidence did.
- Trademark Search & Watch / Brand Protection
This cycle's research found no brand owner or firm operating a self-built clearance/watch core; the named cases (Specsavers, H&M, Gowling Saturn, Kilpatrick) all sit on licensed registry data.
- Carrier Onboarding, Vetting & Compliance Monitoring
The prior score treated FMCSA data plus anomaly detection as ~80% of the core; the named production builds at C.H.
- Digital Freight Matching / Digital Brokerage Platform
The prior assessment scored the matching algorithm as the core; the documented production builds show buyer-side teams (Loadshop aside) build rules and optimisation on bought liquidity, and the network half of the core has no self-built precedent.
- Employee IT Onboarding / Offboarding Automation
Named production builds on Okta Workflows and Entra Lifecycle Workflows (Juniper Square, Front, GitLab, Bayer 04, Wyndham, Akumin) with published outcomes show the self-build is mainstream, which the prior 3 undercounted.
- Enterprise Service Management (ESM) Platform
Named large-scale cross-department deployments of GLPI (Grupo DPSP, Econocom), Jira Service Management (Software AG) and Zammad, found in this pass, show the OSS and general-purpose path covering the core at 80%+, which the prior 3 undercounted.
- Flow Analysis & Network Traffic Analytics (NetFlow/IPFIX)
Named production deployments at scale (Free on Akvorado, Cloudflare goflow2 at 100K+ flows per second, AS286 on pmacct) and ntopng's published ClickHouse scaling show the OSS pipeline covering the core, which the prior 3 undercounted.
- Shadow IT Discovery (Lightweight, Non-CASB)
Research could not verify a single named independent organization running the homegrown pipeline in production; the prior's 4 relied on an uncited claim, and the rubric caps unverified self-builds at 3.
- Restaurant Waitlist Management
The prior score was argued from how easy the build looks rather than from documented self-builds; a fresh pass found the named production Twilio waitlists are Resy and Yelp, not operators, and no named restaurant running its own.
- Automated Reference Checking Software
A fresh search found exactly one named production self-build (Zapier) against a field of named vendor deployments; the prior score assumed multiple teams had shipped.
- HR Workflow Automation & Service Delivery Platform
Deeper research separated the two halves of the category: the named production self-builds (IBM AskHR, Mavlers, Care.com, Questco) all stop at the conversational front door and simple workflows, and none replace case management, entitlements, audit or lifecycle orchestration, so the prior 4 overstated coverage of the core.
- Interview Intelligence Platform
A targeted search for employer self-builds found none: every named employer buys, and the production builds cited previously (Greenhouse, Ashby, Deel on Recall.ai) are recruiting-software vendors building product, not independent teams building for their own needs, so the prior 4 misread the ladder's evidence bar.
- Shift Marketplace & Flexible Scheduling App
A targeted search for named self-built shift marketplaces found only Walmart; Starbucks and the hospital systems the prior assessment assumed were building turned out to run WorkJam, ShiftMed or CareRev under a branded front end, so the multiple-independent-teams bar for a 4 is not met.
- Payer Contract Management & Reimbursement Modeling
The prior score weighed general contract-modeling analytics feasibility without distinguishing the (buildable) reporting/scorecard layer from the (still mostly bought) contract-parsing and reimbursement-calculation core.
- Wound Care Documentation & Imaging
Deeper research found zero named production self-builds — the prior assessment's buildability claim rested on the existence of open-weight research models, not on any deployed provider system, so the score corrects from 4 to 2.
- Charge Capture Software
Prior score assumed buildability from task simplicity; targeted research found only vendor-shipped AI features and zero independent production self-builds, which the rubric caps at 2.
- Clinical Documentation Improvement (CDI) Software
Deeper research distinguished adjacent scribing self-builds (real, at scale) from CDI-specific self-builds (not found) — the prior score conflated the two.
- Denial Management Software
Named self-builds (Rush, UHS, UT Health San Antonio) confirmed real but narrow in scope, which is more consistent with level 3 than the level-4 mainstream-buildable bar.
- Digital Patient Intake & Forms
Deeper research found the named self-build (Body Brave/Jotform) covers forms and consent but not eligibility, payments or FHIR EHR write-back, which is short of the level-4 mainstream-replacement bar.
- Pharma MLR / Promotional Material Review (PromoMats)
A dedicated search for pharma self-built MLR systems returned none, while surfacing seven named vendor deployments - the prior 4 was built on an assumption of multiple independent production self-builds that the record does not contain.
- Pharma Safety Literature Monitoring & Surveillance
Checking the four companies the prior score leaned on found only AstraZeneca with a validated production pipeline - Novartis's work is a research publication, Pfizer's disclosed AI covers case intake rather than literature, and no Roche system surfaced at all.
- Pharma Safety Signal Detection & Management
A targeted search for production open-source signal engines found none, while surfacing five named 2026 commercial deployments and only one published proprietary model (Biogen) that is explicitly not established as a sole regulated engine.
- Provider Credentialing & Enrollment Software
A search specifically for greenfield credentialing self-builds returned none, and the strongest in-house story (Humana Dental) turns out to be insourced operations running on Verifiable's PSV API.
- Real-World Data (RWD) / Real-World Evidence Analytics Platform
Searching specifically for named in-house RWE platforms surfaced Bayer FOUNTAIN, J&J/Janssen ASSURE, Janssen's 400M-record ATLAS deployment and UCB's ATLAS extensions - multiple independent organisations running the analytics core in production on OMOP/OHDSI.
- Risk Adjustment Coding & HCC Capture Platform
The prior 4 rested on Apixio proving the AI approach and an assumption that large plans run internal abstractors in production.
- Acuity-Based Nurse Staffing & Assignment Platform
The prior 3 assumed full production alternatives covering real-time acuity scoring and EHR write-back were uncommon.
- Conversational AI Patient Intake / Triage
The prior 4 asserted multiple documented production self-builds of patient intake using GPT-4 or Claude with clinical prompt engineering.
- Peer-to-Peer & Event Fundraising Platform
This cycle looked for named production self-builds and found none — only a recommended hybrid architecture for organizations that already have engineers — where the prior score inferred buildability from how ordinary the components look.
- Public Records Request / FOIA Management
This cycle separated what the documented self-builds actually cover — portal, intake, routing, tracking, publication — from what agencies still buy, and the review/redaction/secure-release/retention half turned out to be untouched by any named self-build, which the prior score's redaction-is-mature reasoning glossed over.
- Volunteer Management Software
Checking the prior score's evidence this cycle showed it rested on a commercial product (SignUpGenius) and unnamed custom portals; the search for actual production self-builds returned none, and it also surfaced background screening as a vendor contract a build cannot code around.
- 340B Drug Discount Management & Compliance
The prior 4 inferred buildability from the presence of an active competitive analytics field; looking for actual self-builds found the hybrid pattern instead, where entities own the data layer and buy the accumulation, replenishment and audit-evidence engine.
- Healthcare Price Transparency & Cost Estimation Tools
The prior score credited open-source MRF parsers but treated member-facing estimation as vendor territory.
- Payer Payment Integrity Platform (Pre & Post-Pay)
The prior score credited mature claims ML and treated only the cross-payer dataset as the vendors remaining hold.
- Charity Auction & Mobile Bidding Software
The prior scored buildability from the simplicity of the engineering problem; research found the actual production self-builds are a school project, a commissioned one-off and hobby OSS, which is rung-3 evidence, not the mainstream-choice bar of rung 4.
- Government Queue & Appointment Management
The prior 4 rested on an unnamed claim that multiple teams run self-built queue systems.
- Grassroots Advocacy & Public Affairs Platform
The prior 4 assumed advocacy tools are routinely assembled from CRM plus AI.
- Online Appointment Scheduling & Booking Links
Moved 4->3: Cal.com moved its production code to closed-source in 2026 and the MIT community edition (Cal.diy) is now explicitly personal/non-production and stripped of teams, routing, workflows and SSO.
- Project Time Tracking & Billable Hours
Moved 4->3: closer research shows the billable-hours core that names this category — rate history, approvals and QuickBooks/Xero integration (weeks-to-months, no QuickBooks time-API sandbox) — meaningfully favors buying, and the prior score leaned on ‘Clockify is free at its core tier,’ which the 2026 free-tier change (billable rates now paid) undercuts.