Services · AI Safety

Run AI agents in production, safely.

From problem to solution

What keeps agents off real work, solved one thing at a time.

Connect an agent to a business system, and it usually stalls on one of three things.

Problem

Nothing stops an agent before it acts

Told to pay or delete, it simply does — even an amount that would need a manager's sign-off from a person. So it only ever gets work where a mistake would not matter.

DECIDE

Judge every action against the limits you already have

A payment, a record changed or deleted, a permission granted, an order placed. Each request is checked against the thresholds finance and security already work to, and the ceiling set for that agent and workflow — then let through, sent to a person, or stopped. The agent cannot route around it.

Problem

Nobody can say afterwards what happened

Every audit or query means gathering logs and screenshots by hand — and no one can tell how much the agents are doing, or who is being asked to approve too much.

ACCOUNT

Keep every action on the record

Who asked for what, what went through, who approved it, what was refused — retrievable by workflow or by month. Executions, approvals and refusals are counted too, so you can see where approvals are piling up.

Problem

The data cannot leave the company

Handing supplier and customer records to an outside service will not get past your own review.

CONFIDENTIAL

Processed by AI, unseen even by the server operator

Cryptography keeps the contents out of sight of whoever runs the server while the AI works on them. Your orders, counterparties and customer records never leave in a form anyone else can read.

Actions covered · examples

  • Payments and transfers
  • Records created, changed, or deleted
  • Permissions granted and revoked

These are examples. What an agent is allowed to do is set against your own systems, so the list is drawn up with you.

Screens

What it looks like in use.

Screens from a product still in development; the details may change. Its own navigation switches screens, and pressing the screen enlarges it. The figures come from a demonstration environment; every company, amount and destination in them is fictitious.

Where a person decidesIn development

APPROVALS

Where a person decides

The amount leads. Which agent asked, what for, and how long is left to answer. An approval is a signature from an authenticator, so the person who pressed it and the thing they pressed it on are bound together.

OVERVIEW

What happened today

Every count is taken from the receipts rather than kept beside them. The one the provider never confirmed stays “nobody knows” — rounded neither to success nor to failure.

AUTHORITY

What each agent may do

The tools it holds, the purposes it is allowed, its ceilings. A change needs a reason, and who widened what is in the register.

INCIDENTS

The timeline an investigation reads

Decision, intent and outcome, one row each. Anything executed without the approval it required, or still waiting on an answer, is marked.

RISK

What you are exposed to

The first figure is the largest payment this agent can make with nobody asked. Under it: the ceiling on a single action, what has moved today, and the tenant's daily ceiling. Below that, what the receipts say: how many the rules stopped, how many the provider never confirmed, and how many ran without the approval they required.

Demo

Request a demo→

Get in touch

contact@noahsarklab.com→