Skip to main content
Flomisma

Evaluator brief

Trust stack summary

One-page overview for auditors, enterprise procurement, and partnership diligence. Engineering evidence lives in the portal docs/trust/ bundle; this page is the public-facing index.

Control themes (SOC 2 aligned)

AreaImplementation evidence
Encryption at restPer-tenant vault wrap (AES-256-GCM, HKDF DEK)
Processing integrityPipeline stage chain + halt diagnostics
Human oversight (AI)Adaptive HITL — shouldAutoExecute() gate
MonitoringDaily Ed25519 attestation + public /verifier
Agent settlementDeterministic policies + off-chain ledger (no chain SoR)

Differentiator

  • Third-party pipeline verification at /verifier — no operator credentials required
  • Daily attestation root verifiable offline via licensee SDK
  • Agent settlement uses off-chain ledger; on-chain is optional, not default

SOC 2 Type 1 status

Readiness in progress. Control mapping and performance baselines maintained under portal docs/trust/. Contact sales for auditor handoff package.