Evidence-Grade Attestation for AI Systems
We turn every AI action into
tamper-evident proof
so buyers can independently verify.
The Problem
AI vendors are losing deals because they can't quickly and easily produce verifiable proof that their systems meet security and compliance requirements for health systems, payors, clinics, and platform providers.
AI vendors losing deals, delaying deployments, burning cycles on manual audit responses and security questionnaires.
Guardrail vendors enforce and log. But buyers still have to trust their interpretation. No independent verification.
"Prove your AI controls actually work—to someone who doesn't trust your dashboard."
"Trust our dashboard"
What competitors offer
Audit-grade evidence bundles
What GLACIS provides
Why Now
AI dramatically increases HIPAA violation exposure. Every AI interaction touching PHI needs auditable proof of compliant handling.
First US state law with affirmative defense for NIST AI RMF / ISO 42001. Violations up to $20K each.
Healthcare AI classified as "high-risk." Requires continuous automatic recording of events and traceability throughout lifecycle.
ADMT opt-out rights for healthcare, finance, employment decisions. Risk assessments required by April 2028.
"If you could evaluate the top 10 AI tools I'm being pitched and give me one report that proves they're safe to deploy... sign me up."
— CMIO, 400-bed regional health system
The thesis: In 18 months, regulated AI without cryptographic proof will be uninsurable and unprocurable. The window for purpose-built solutions is 2025-2027—organizations starting now barely have time for full compliance.
The Wedge
Cryptographic proof that guardrails ran on every single request. Not logs—receipts.
HIPAA, SOC 2, ISO 42001, HITRUST AI (44 controls), HECVAT 4.0 pre-mapped. Auditor-ready from day one.
One URL replaces 400 security questions. Enables "Green Lane" automated procurement.
Drop-in sidecar
Collect attestations
Evidence portal live
Risk Reversal: No deployable evidence pack? Full refund.
We eat the risk because we know the tech works.
Inevitability
Static docs, SOC 2 badges, status pages
Buyers demand evidence, not promises
Table stakes for enterprise AI
The pattern is clear: Every B2B company has a trust center now. But those are promises about intent—not proof of execution.
We're not inventing a category.
We're riding an inevitable transition and owning the infrastructure layer.
Network Effect: More vendors adopt Evidence Packs → Health systems require Evidence Packs in RFPs → More vendors adopt (competitive pressure) → GLACIS becomes procurement standard.
How It Works
GKE / ECS / Lambda
Attest → Hash → Sign
<50ms • 0 bytes PHI out
Hashes only
Merkle anchor
PHI never leaves customer boundary. Eliminates months of legal review.
Ed25519 signatures + RFC 6962 Merkle trees. Security teams verify independently—no trust required.
Sidecar alongside your gateway. Works with OpenAI, Anthropic, Vertex, any LLM.
Defensibility
Binary hash + network isolation binding per epoch. Auditor-reproducible sampling via Digest Publication Ledger.
Control actions require 5 cryptographic gates. Only verified receipts can modify system behavior.
Automated payouts from attestation data. Zero-knowledge risk assessment—no content custody.
Industry's first auditor-verifiable hallucination rate. Cryptographic random sampling with Clopper-Pearson confidence intervals enables actuarial pricing and procurement verification.
The moat: Governance platforms tell you what went wrong after the fact. GLACIS prevents violations in real-time and provides tamper-proof evidence. Competitors can build guardrails—they can't own the attestation primitives.
Validation
Credo AI's CEO (Forrester Wave Leader in AI Governance) reached out directly after seeing our positioning—meeting at JPM to discuss how GLACIS complements their governance platform.
When the market leader sees you as infrastructure they need, that's signal.
Design Partners
Clinical voice scribe. Evidence pack pilot underway.
AI governance for clinical decisions. Active design partner.
Pipeline
Platform CIO meeting confirmed at JPM.
Backing & Distribution
$600K. AI-native company network.
GTM partnership. Infrastructure credibility.
Credits + distribution. Healthcare AI focus.
Joining coalition. 50+ health system network.
Expansion
Hardest compliance = strongest moat
Pharma, med tech, clinical trials
SOX, GDPR are easier problems
$50B+ AI liability insurance market
The SSL analogy
SSL became the trust layer for every web transaction. We're building the proof layer for every consequential AI decision.
Insurance enabler
Insurers need: (1) Parametric triggers, (2) Cryptographic proof, (3) Immutable logs. We provide all three. Competing platforms provide none.
Dual-Sided Flywheel
Critical mass targets: 10 vendors with Evidence Packs • 3 enterprise health systems requiring in RFPs • 1 GPO pre-vetting
Team
1 in 4 smartphone users globally
SwiftKey: Founding exec → $250M Microsoft acquisition
Cambridge Law • Regulatory navigation
First FDA-Authorized AI Diagnostic
Cognoa: Medical Director, secured FDA authorization
UW Faculty • CHAI: 50+ health systems network
Rust/WASM at Billion-Scale
WPI Robotics Faculty • Wayfair: Staff eng, <10ms ML
Healthcare AI Evaluation
WPI MS Robotics • Deep RL, LLMs, Computer Vision
Advisors
The Ask
In 18 months, regulated AI without cryptographic proof will be uninsurable and unprocurable.
We're building the infrastructure that makes deployment possible.
ARR target by Dec 2026
4 families filed Nov '25
AI liability insurance TAM
August 2026: EU AI Act general application •
June 2026: Colorado AI Act enforcement
Organizations need 12-18 months to implement. The window is closing.