Evaluator brief
Trust stack summary
One-page overview for auditors, enterprise procurement, and partnership diligence. Engineering evidence lives in the portal docs/trust/ bundle; this page is the public-facing index.
Control themes (SOC 2 aligned)
| Area | Implementation evidence |
|---|---|
| Encryption at rest | Per-tenant vault wrap (AES-256-GCM, HKDF DEK) |
| Processing integrity | Pipeline stage chain + halt diagnostics |
| Human oversight (AI) | Adaptive HITL — shouldAutoExecute() gate |
| Monitoring | Daily Ed25519 attestation + public /verifier |
| Agent settlement | Deterministic policies + off-chain ledger (no chain SoR) |
Differentiator
- Third-party pipeline verification at /verifier — no operator credentials required
- Daily attestation root verifiable offline via licensee SDK
- Agent settlement uses off-chain ledger; on-chain is optional, not default
SOC 2 Type 1 status
Readiness in progress. Control mapping and performance baselines maintained under portal docs/trust/. Contact sales for auditor handoff package.