Shield
Zero-trust sign-in — device-flow (RFC 8628) and SSO. Tokens are bearer headers, never in URLs.
Security & Trust
Operator is built for teams whose code can't leave the building. Here is exactly how it's protected, where it runs, and where we are on compliance — stated plainly, with no overstatement.
How a request is governed
Sign-in and identity, then role and policy, then the model, then your data — each stage enforced, each action recorded. Nothing reaches a model or your repository that policy hasn't cleared.
Zero-trust sign-in — device-flow (RFC 8628) and SSO. Tokens are bearer headers, never in URLs.
Role- and attribute-based access, and per-action approval for anything irreversible or outward-facing.
An append-only audit chain — every decision leaves evidence that can't be quietly rewritten.
Controls
Models built and hosted by AXE on its own hardware — hosted, on-prem, or fully air-gapped. Not rented from a third-party frontier API.
Google / Microsoft SSO and the RFC 8628 device grant. SAML / SCIM provisioning available on request.
Irreversible and outward-facing actions are gated behind explicit approval; approval never carries across contexts.
Admin vs. member tool tiers; scoped API keys shown once, revocable instantly. Secrets ride as headers, never URLs.
Actions are recorded to an append-only chain (Knox, Ed25519 + ML-DSA-65) so activity is reviewable and tamper-evident.
Your code and prompts are not used to train models by default. Canadian data residency.
Data handling
| Where it runs | AXE-owned infrastructure (Canadian-resident), your datacentre, or fully air-gapped. |
| Data residency | Canada. No reliance on the US CLOUD Act, FISA, or Patriot Act jurisdictions. |
| Model training | Your code and prompts are not used to train models by default. |
| Secrets in transit | Bearer tokens in Authorization headers; never in URLs, query strings, or logs. |
| API keys | Scoped per project, shown once (hash stored), revocable instantly. |
| Access model | SSO, role/attribute-based policy, per-action approval, tiered tool access. |
| Audit | Append-only, tamper-evident chain of actions (Knox). |
Compliance status
| PIPEDA | Compliant. |
| ITSG-33 | Aligned. 11 baseline controls; full mapping available under NDA. |
| FIPS 140-2 | In progress (Level 1). |
| Protected B | Assessment planned. PBMM gap analysis complete. |
| SOC 2 Type II | Planned. Audit engagement scheduled Q3 2026. |
Need the control mapping, an assessment letter, or a questionnaire answered? Request documents →
Sovereignty
We don't rent AI infrastructure. We build systems organizations own outright — deployed on their hardware, governed by their policies, answerable only to them.
Responsible disclosure
Found a vulnerability? Email [email protected] — privately first, with repro steps. We acknowledge within two business days and will agree a disclosure timeline. Good-faith research is welcome; don't access data that isn't yours.
We'll answer the questionnaire