Roadmap
Built, building, and planned.
The trust and compliance infrastructure for autonomous AI. Here is what we have built and where we are going.
AGENT IDENTITY
- Agent registration and verified identityShipped
- Blockchain SSN on SolanaShipped
- Self-custody and managed custody optionsShipped
- Behavior profiles and enforcementShipped
- Safety packages (HIPAA, SOC2, PII, Prompt Defense)Shipped
- Trust scoring system (0 to 1000, 4 trust tiers)Shipped
- Reputation decay and behavioral driftShipped
- Cross-vendor agent trust verificationNext
- Unregistered agent scannerNext
MONITORING AND ENFORCEMENT
- Real-time prompt injection detectionShipped
- Spend tracking and budget limitsShipped
- Email alerts and webhook systemShipped
- Audit log with CSV and JSON exportShipped
- Ed25519 signed audit exportsShipped
- Rate limiting enforcementShipped
- Off-limits actions enforcementShipped
- Response monitoring, output safety and PII detectionShipped
- MCP threat scannerShipped
- Tiered on-chain authorization (low, medium, high stakes)Next
COMPLIANCE
- On-chain program upgrades require multisig approval; no single person can change the deployed programNext
- Regulator-ready signed exportsNext
- SSO and enterprise team managementNext
LEGAL
- EU AI Act Article 50 transparency (in force) and Article 12 logging (high-risk from 2 December 2027)Shipped
- Regulatory framework mapping per agent actionShipped
- Hourly Merkle anchoring to Solana, with per-event proof of inclusion in the on-chain rootShipped
- Ed25519 signed audit exportsShipped
- Cal. Civ. Code § 1714.46 (AB 316, Stats. 2025, ch. 672): autonomy is not a defenseShipped
- ABA Model Rules 1.1, 1.6, 5.1, 5.3 and Formal Opinion 512 (2024)Shipped
- Court AI Disclosure: 22 NYCRR Part 161 and FRCP 11(b)Shipped
- eDiscovery TAR: FRCP 26 and 34; Sedona Principles 2 and 6Shipped
- UK DRCF mappingNext
- ISO 42001 control mappingShipped
- Matter-level access isolation proofNext
- State AI disclosure patchwork (Colorado, California, Texas, Illinois, New York)Next
HEALTHCARE
- HIPAA compliance PDF reportShipped
- SOC2 compliance PDF reportShipped
- EU AI Act Article 50 transparency (in force) and Article 12 logging (high-risk from 2 December 2027)Shipped
- Regulatory framework mapping per agent actionShipped
- Hourly Merkle anchoring to Solana, with per-event proof of inclusion in the on-chain rootShipped
- Ed25519 signed audit exportsShipped
- Per-agent PHI access documentation (HIPAA minimum necessary standard)Shipped
- HHS OCR Phase 3 audit-ready risk assessment packageShipped
- EU AI Act Annex III high-risk system documentation (from 2 December 2027)Shipped
- Business Associate Agreement compliance evidenceNext
- CMS prior authorization decision audit trailNext
- HIPAA Security Rule update (NPRM 6 January 2025; not yet a final rule): encryption of all ePHI, MFA, continuous monitoring, removal of addressable versus requiredNext
FINANCE
- SOC2 compliance PDF reportShipped
- SR 11-7 compliance PDF reportShipped
- EU AI Act Article 50 transparency (in force) and Article 12 logging (high-risk from 2 December 2027)Shipped
- Regulatory framework mapping per agent actionShipped
- Hourly Merkle anchoring to Solana, with per-event proof of inclusion in the on-chain rootShipped
- Ed25519 signed audit exportsShipped
- SOX 302 and 906 financial close audit trail with human authorizer attributionShipped
- FINRA Rule 4511 auditable recordsShipped
- AML and FinCEN decision audit trailShipped
- NYDFS Part 500 compliance reportShipped
- SEC Rule 17a-4 tamper-evident recordsNext
- OCC third-party risk call chain documentationNext
- SR 26-2 model risk documentation packageShipped
- US Treasury FS AI RMF control mappingNext
- DORA operational resilience documentation for EU deploymentsNext
- PCAOB audit evidence chain documentationNext
INSURANCE
- SOC2 compliance PDF reportShipped
- EU AI Act Article 50 transparency (in force) and Article 12 logging (high-risk from 2 December 2027)Shipped
- Regulatory framework mapping per agent actionShipped
- Hourly Merkle anchoring to Solana, with per-event proof of inclusion in the on-chain rootShipped
- Ed25519 signed audit exportsShipped
- NAIC model bulletin per-agent underwriting decision documentationShipped
- Colorado ADMT Law (SB 26-189, effective 1 January 2027). SB 24-205 was repealed and never took effectShipped
- NYDFS Part 500 compliance reportShipped
- State insurance commissioner examination documentation per agentNext
- EU Solvency II operational risk documentationNext
- UK FCA operational resilience documentationNext
- Cyber insurance agent registry reportNext
THE NETWORK
- Decentralized agent training networkPlanned
- Federated learning across agent categoriesPlanned
- $CPRX token layerPlanned
- Cross-organization agent reputationPlanned
- Industry-specific agent intelligence poolsPlanned
Building something that needs trust infrastructure?
Ship trust infrastructure before the August 2026 EU AI Act deadline.
Let's talk.