Every step ARIA takes — classify, retrieve, draft, send — emits a hash-chained receipt. The chain is published. Your auditors verify with a single API call. We can't hide a thing, and we don't try to.
A preview of the receipts verifier. On a live workspace, your auditors pull any receipt ID and pass it to /v1/verify to see the source documents, the hash chain, and the exact prompt — or that we can't produce one.
Sample data from a public e-commerce sandbox. Your auditors and DPO get the same view, scoped to your workspace, with PII unblurred under access controls.
Single-tenant Postgres per workspace. Customer data never leaves the EU unless you explicitly opt in. We don't train on your data. Ever.
tls13aes-256byoked25519Public status page. Postmortems within 5 business days. Live receipts so you can verify on your own. Currently serving API v1.9.8.9 · all dependency checks green.
Most asks are public. Sensitive evidence is one NDA away — auto-generated & signed in < 2 minutes via DocuSign.
Talk to our team about a sandbox tenant — bring your own KB, your own auditors, and try to break a receipt. We'll buy the team coffee if you do.