Roadmap

Built, building, and planned.

The trust and compliance infrastructure for autonomous AI. Here is what we have built and where we are going.

AGENT IDENTITY

  • Agent registration and verified identityShipped
  • Blockchain SSN on SolanaShipped
  • Self-custody and managed custody optionsShipped
  • Behavior profiles and enforcementShipped
  • Safety packages (HIPAA, SOC2, PII, Prompt Defense)Shipped
  • Trust scoring system (0 to 1000, 4 trust tiers)Shipped
  • Reputation decay and behavioral driftShipped
  • Cross-vendor agent trust verificationNext
  • Unregistered agent scannerNext

MONITORING AND ENFORCEMENT

  • Real-time prompt injection detectionShipped
  • Spend tracking and budget limitsShipped
  • Email alerts and webhook systemShipped
  • Audit log with CSV and JSON exportShipped
  • Ed25519 signed audit exportsShipped
  • Rate limiting enforcementShipped
  • Off-limits actions enforcementShipped
  • Response monitoring, output safety and PII detectionShipped
  • MCP threat scannerShipped
  • Tiered on-chain authorization (low, medium, high stakes)Next

COMPLIANCE

  • On-chain program upgrades require multisig approval; no single person can change the deployed programNext
  • Regulator-ready signed exportsNext
  • SSO and enterprise team managementNext
LEGAL
  • EU AI Act Article 50 transparency (in force) and Article 12 logging (high-risk from 2 December 2027)Shipped
  • Regulatory framework mapping per agent actionShipped
  • Hourly Merkle anchoring to Solana, with per-event proof of inclusion in the on-chain rootShipped
  • Ed25519 signed audit exportsShipped
  • Cal. Civ. Code § 1714.46 (AB 316, Stats. 2025, ch. 672): autonomy is not a defenseShipped
  • ABA Model Rules 1.1, 1.6, 5.1, 5.3 and Formal Opinion 512 (2024)Shipped
  • Court AI Disclosure: 22 NYCRR Part 161 and FRCP 11(b)Shipped
  • eDiscovery TAR: FRCP 26 and 34; Sedona Principles 2 and 6Shipped
  • UK DRCF mappingNext
  • ISO 42001 control mappingShipped
  • Matter-level access isolation proofNext
  • State AI disclosure patchwork (Colorado, California, Texas, Illinois, New York)Next
HEALTHCARE
  • HIPAA compliance PDF reportShipped
  • SOC2 compliance PDF reportShipped
  • EU AI Act Article 50 transparency (in force) and Article 12 logging (high-risk from 2 December 2027)Shipped
  • Regulatory framework mapping per agent actionShipped
  • Hourly Merkle anchoring to Solana, with per-event proof of inclusion in the on-chain rootShipped
  • Ed25519 signed audit exportsShipped
  • Per-agent PHI access documentation (HIPAA minimum necessary standard)Shipped
  • HHS OCR Phase 3 audit-ready risk assessment packageShipped
  • EU AI Act Annex III high-risk system documentation (from 2 December 2027)Shipped
  • Business Associate Agreement compliance evidenceNext
  • CMS prior authorization decision audit trailNext
  • HIPAA Security Rule update (NPRM 6 January 2025; not yet a final rule): encryption of all ePHI, MFA, continuous monitoring, removal of addressable versus requiredNext
FINANCE
  • SOC2 compliance PDF reportShipped
  • SR 11-7 compliance PDF reportShipped
  • EU AI Act Article 50 transparency (in force) and Article 12 logging (high-risk from 2 December 2027)Shipped
  • Regulatory framework mapping per agent actionShipped
  • Hourly Merkle anchoring to Solana, with per-event proof of inclusion in the on-chain rootShipped
  • Ed25519 signed audit exportsShipped
  • SOX 302 and 906 financial close audit trail with human authorizer attributionShipped
  • FINRA Rule 4511 auditable recordsShipped
  • AML and FinCEN decision audit trailShipped
  • NYDFS Part 500 compliance reportShipped
  • SEC Rule 17a-4 tamper-evident recordsNext
  • OCC third-party risk call chain documentationNext
  • SR 26-2 model risk documentation packageShipped
  • US Treasury FS AI RMF control mappingNext
  • DORA operational resilience documentation for EU deploymentsNext
  • PCAOB audit evidence chain documentationNext
INSURANCE
  • SOC2 compliance PDF reportShipped
  • EU AI Act Article 50 transparency (in force) and Article 12 logging (high-risk from 2 December 2027)Shipped
  • Regulatory framework mapping per agent actionShipped
  • Hourly Merkle anchoring to Solana, with per-event proof of inclusion in the on-chain rootShipped
  • Ed25519 signed audit exportsShipped
  • NAIC model bulletin per-agent underwriting decision documentationShipped
  • Colorado ADMT Law (SB 26-189, effective 1 January 2027). SB 24-205 was repealed and never took effectShipped
  • NYDFS Part 500 compliance reportShipped
  • State insurance commissioner examination documentation per agentNext
  • EU Solvency II operational risk documentationNext
  • UK FCA operational resilience documentationNext
  • Cyber insurance agent registry reportNext

THE NETWORK

  • Decentralized agent training networkPlanned
  • Federated learning across agent categoriesPlanned
  • $CPRX token layerPlanned
  • Cross-organization agent reputationPlanned
  • Industry-specific agent intelligence poolsPlanned

Building something that needs trust infrastructure?

Ship trust infrastructure before the August 2026 EU AI Act deadline.

Let's talk.
Message the founder