Enterprise AI coding needs a control plane.

Qorthos starts with local runtime evidence and grows into hosted policy, trust-root distribution, fleet visibility, and audit handoff for teams standardizing AI coding across repos.

Deployment
Sidecar in your VPC or local environment. Source, schemas, prompts, and raw SQL stay inside your boundary.
Trust root
Your KMS, your keys. Qorthos supports AWS KMS, GCP KMS, Vault, and local project keys.
Identity
Session identity, agent capability snapshots, scope contracts, and signed delegation links.
Compliance
SOX, DORA, and EU AI Act mapping today. SOC 2, HIPAA, and ISO/IEC 42001 mapping are enterprise roadmap items.
Support
Design-partner support with shared channel, implementation help, and named technical ownership during pilots.

What ships, when.

roadmap · 2026
Today · Design partners

Local-first runtime and signed attestations.

Validation, runtime policy, signed evidence, trust roots, replay bundles, and offline verification are live in the core runtime for selected teams.

  • +Live SQL and repository validators
  • +Runtime policy and signed scope contracts
  • +DSSE / in-toto / compliance bundles
  • +Offline verifier CLI and browser library
Q3 2026 · Hosted control plane

Org-wide policy and compliance handoff.

Hosted policy distribution, multi-repo evidence search, DORA/SOX workflows, and identity integration for teams standardizing AI coding.

  • +Hosted bundle store and search
  • +Multi-repo policy distribution
  • +DORA / SOX operating views
  • +SSO and org administration
Q4 2026 · Fleet and integrations

Fleet visibility and enterprise integrations.

SIEM/OTLP export, cross-session policy graphs, federation, and deeper audit handoff for security and compliance teams.

  • +Splunk · Datadog · SIEM export
  • +Cross-session evidence graph
  • +Trust-root federation
  • +Auditor-readable audit packs

Help shape the enterprise control plane.

We are onboarding a small cohort of teams shipping production code with AI agents today. Partners get direct roadmap access, custom validation work, and engineering support during the pilot.

  • 01
    Direct support for custom internal models
    Bring your model stack; we map capability records, validators, and evidence expectations.
  • 02
    Priority integration for your security stack
    SIEM, ticketing, identity, KMS, and audit handoff requirements shape the first enterprise workflows.
  • 03
    Zero-cost engineering support during pilot
    Shared working channel, named technical owner, and implementation help during the design-partner window.
  • 04
    Input on the public evidence vocabulary
    Your compliance team's review language helps refine schemas, bundle fields, and auditor handoff.