Trust

Built for firms that answer to regulators.

When your compliance function, your auditor, or a regulator examines the platform — the answers are already there. Modelled for FCA, FINMA, CySEC and ADGM/FSRA.

Modelled for four regulators, live across five jurisdictions.

What a regulator sees
01

Compliance, by default.

Role-based access control with per-tenant administrators; impersonation is gated and audited.
All client documents stored encrypted in EU-region object storage, served through short-lived signed links.
Document e-signature through a Swiss-regulated provider, compliant with ZertES and eIDAS.
A full audit trail on every record change, and an immutable, hash-chained audit on strategic portfolio decisions.
Tenant data isolation at the application layer, with per-tenant database schemas available on request.
AI workflows keep source citations, permissions and human review steps at every stage.
Infrastructure
02

EU-region encryption

Data encrypted at rest in EU object storage; access through short-lived signed links only.

Hash-chained audit

Strategic portfolio decisions are written to an immutable, tamper-evident audit chain.

Tenant isolation

Isolation at the application layer, with per-tenant database schemas available on request.

Governance spine
03

The part a buyer can point a regulator at.

How those controls are enforced underneath — in the platform layer, where configuration cannot switch them off.

Entry ₙ₋₁
#a3f90c…
prev: #71e2b8…
Entry ₙ
#c81d47…
prev: #a3f90c…
Entry ₙ₊₁
#5e0af2…
prev: #c81d47…
Alter one entry and every hash downstream breaks.

Tamper-evident audit

SHA-256 hash chains — each entry folds in the previous hash — across ten-plus registers, with a nightly chain-verification job.

Segregation of duties

A platform approvals engine with delegation and escalation; the payment cycle runs a maker-checker state machine; compliance runs a CCO approval inbox.

Data protection

Field-level PII encryption, a client redaction library, redaction-aware AI embeddings, a records-retention engine and per-tenant data residency.

Access control

Sixteen roles enforced server-side, per-route entitlement gates, session policy with step-up re-authentication, CSRF and rate limiting, HMAC-signed admin bridges.

Regulatory capability
04

Evidence in production, not on a roadmap.

Each capability is backed by a working surface in the platform today — carried here with an honest status.

Regulatory capability
Evidence in production
Status
CySEC Annex IV (AIFMD)
Filing generation as schema-valid XML; code mappings seeded; config and history surfaces.
Live
MiFID costs & charges
A dedicated disclosure module and library.
Live
FINMA restrictions
Concentration screening over live trade flow, with a monthly archive job.
Live
AML transaction monitoring
A rules engine on synced transactions; daily scans; false-positive suppression.
Continuous
SAR / STR
A hash-chained register with a staged filing workflow.
Live
Sanctions & PEP
OpenSanctions as the live default; scheduled re-screening; feed change detection.
Continuous
DSAR
A full legal-console workflow: review, privilege, redaction QC, disclosure, lock.
Live
FATCA / CRS
A tax self-certification module and mandate templates.
Live
ADGM (UAE)
A suitability register with a dedicated read-only compliance role.
Live
Jurisdiction controls
UK, CH, CY, UAE, CZ — regulator-correspondence log, versioned policy registry, document retention.
Per tenant
Live across five jurisdictions
FCA
United Kingdom
FINMA
Switzerland
CySEC
Cyprus
ADGM
UAE
CZ
Czechia

Each jurisdiction runs per tenant, with a regulator-correspondence log, a versioned policy registry and document retention. Controls verified against the production codebase, August 2026.

When a regulator examines the platform — the answers are already there.

For the full control narrative and responsible disclosure, see the Security page.

Get in touch

Ready for institutional scrutiny.

Where it is today