Trust Center

What we can prove, and what we cannot

Every claim on this page traces to our technical due-diligence pack. Where a capability is partial or absent, it says so here rather than in a footnote you find later.

Stated plainly

Known gaps and what we are doing about them

A reviewer will find these. Better that they come from us.

Test coverage is narrow

Unit coverage plus Playwright smoke and policy routing tests. Full live OAuth/SCIM/invoice journeys still need staging credentials in CI.

Plan: Wire remaining E2E journeys against a staging API with secrets — tracked in docs/testing.md.

No dedicated QA function

QA process and release checklist now documented; named owner pending Medo confirmation.

Plan: Confirm named QA owner and enforce checklist on production PRs.

No on-premises artifact

Sovereign routing and data-residency control exist today; installable software for your own perimeter does not.

Plan: See docs/on-prem-packaging-plan.md — containerisation and packaging, several weeks.

SOC 2 is Type II ready, not certified

Controls are built and mapped. No audit has been completed and no report exists.

Plan: Engage an auditor. Timeline set by the audit window, not by engineering.

Customer proof points are not published

Named references and quantified outcomes are absent by choice rather than anonymised. We would rather show nothing than an unattributable quote.

Plan: Published as customers agree to be named.

Closed 6 August 2026: continuous integration runs build, typecheck and unit tests on every push and PR.

Identity

SCIM 2.0 — live in production

Microsoft Entra ID and Okta onboarding is connector configuration rather than bespoke integration.

CapabilityEndpointStatus
Service discoveryGET /scim/v2/ServiceProviderConfigLive
Schema discoveryGET /scim/v2/SchemasLive
List / get usersGET /scim/v2/Users, /Users/{id}Live
Create / replace / delete userPOST, PUT, DELETE /scim/v2/UsersLive
List / get groupsGET /scim/v2/Groups, /Groups/{id}Live
Create / replace / delete groupPOST, PUT, DELETE /scim/v2/GroupsLive
Per-tenant enable / disablePOST /api/v1/orgs/{org}/scim/{enable,disable}Live
Governance

AI compliance built into the routing layer

Enforced before the call executes, not audited after.

Organization Default

All managed models allowed; frontier tier requires approval.

EU Data Residency

EU-friendly providers only. Approval required; frontier tier blocked.

Air-Gapped / On-Prem

Only local and customer-private endpoints may serve the request.

Free Tier Sandbox

Free and standard models only, for development.

Sovereign & on-premises

Sovereign routing today, installable software not yet

Supported now

  • Air-gapped / on-prem governance policy restricting execution to local and customer-private model endpoints
  • Private and self-hosted model endpoints as a first-class model category
  • BYOK — provider credentials stay with the customer
  • EU data residency enforced at routing time
  • No customer data leaves the tenant boundary for policy-restricted workloads

Not yet available

  • A packaged on-premises distribution. There are no container images, no Helm chart and no installer today — the platform runs as a hosted service.
Architecture

How the platform is put together

Front end

Next.js, exported as a static site. No server-side rendering in production, which removes a class of server attack surface.

Application / API

Laravel (PHP 8.3/8.4) providing authentication, SCIM, governance, AI routing and the integration gateway.

Domain logic

TypeScript packages — model hub, provider hub, agent core, workflow engine, OCR, and the vertical applications.

Ecosystem services

Separate deployments (Invoice AI, Carbon, Sovra AI) federated through a server-side gateway.

Frameworks

Aligned, not certified

ISO 27001

Controls aligned

SOC 2 Type II

Ready — not certified

GDPR

Controls aligned

NIS2

Controls aligned

ISO 42001

Controls aligned

“Aligned” means controls exist and are mapped; “certified” would mean an auditor has issued a report. We are the former.

Reviewing us for a regulated deployment?

We will walk your security and assurance team through any of the above, including the gaps.

Request a security reviewExplore the platform SOC 2 Type II ready — not certified
© 2026 AI-Passinfo@aipass.space