MOSS: Control Infrastructure for Enterprise AI
Message-Origin Signing System

Scale AI
Not risk

MOSS enforces your policies before an AI agent acts, then signs a permanent record of what it did.

MOSS · ACTION RECORD VERIFIED
agent{{ recAgent }} timestamp{{ recTime }} action{{ recAction }} decision{{ recDecision }} framework{{ recFramework }} obligation{{ recObligation }}
sig   {{ recSig }}
chain {{ recChain }}
TAMPER-EVIDENT ML-DSA-44 · PQC
actions governed today {{ counter }}
{{ s.big }}
{{ s.label }}
THE TRANSFORMATION

Autonomous agents you can hand real work to

Every action is checked before it runs and signed the instant it happens.

loan-underwriter-v4
RUNNING UNATTENDED
Four decisions, made on its own. Every one governed before it ran.
{{ a.action }} {{ a.verdict }}
THE STAKES

One agent goes rogue
Watch both timelines

Same agent. Same intent. The only difference is whether control runs before execution.

WITHOUT GOVERNANCE RUNNING
{{ r.label }} {{ r.status }}
{{ rogueExposed }}
RECORDS EXFILTRATED
agent still running
{{ rogueTime }} elapsed
WITH MOSS ENFORCED
{{ r.label }} {{ r.status }}
0
RECORDS EXFILTRATED
threat neutralized
killed in {{ mossKill }}
MGI SCORE

One number for the enterprise

The MOSS Governance Index turns your governance posture into one number from 200 to 900, scored across four dimensions. One score that shows an AI system is ready to ship.

{{ d }}
Get your MGI Score
200 900
{{ scoreDisplay }}
COMPLIANT TIER
▲ 48 pts · last 90 days
Starting·Developing·Compliant·Authority·Forensic Prime
PLATFORM

Control that
acts before
your AI does

Every action passes through ten enforcement stages before it runs. This is the control plane.

MOSS · CONTROL PLANE {{ planeStatus }}
INBOUND credit-decision-v3 · loan_application.evaluate
{{ r.name }} {{ r.verb }}
→ signed · sealed · streamed to your stack ML-DSA-44
THE RECORD

Every action
leaves a receipt

Signed, hash-chained, and Merkle-rooted the instant it happens. Tamper with one entry and the whole chain breaks. Verify any of it offline, years later, in court.

AUDIT LOG · HASH-CHAINED CHAIN INTACT
AGENTACTIONDECISIONSIGNATURE
data-pipeline-agent load_data SIGNED 749d64597a773774
marketing-copilot access_customer_list BLOCKED ee4e735a3e0cca6b
code-review-assistant post_review_comment SIGNED 45ae436cd2791722
hr-screening-agent rank_candidates HELD 5751cf75ac75f40e
customer-support-bot access_customer_pii BLOCKED 2a60da9a55a08173
finance-assistant-prod generate_report SIGNED 958f7a5f3ae18c6b
17 of 17 entries · tamper-evident ML-DSA-44
Action allowed
data-pipeline-agent · load_data
MERKLE PROOF · INCLUSION
SIBLING HASHES  (LEAF → ROOT)
1L30caa0fb4988d57efd00786ec25ebd0a6dce83a2…
2L7e5f5ed67a1d58b99f7d2ec9cd4f159a872bd7d8…
3La1db4955ff5d4e9b84e59aaf182b2cc8134f5ac0…
4L3adf251e10dd773ebd5e34da7fdc3fddb40e10b1…
5Rf69d7c20a91731fd2edfb649a213728ea8a12823…
MERKLE ROOT
515439071a58c6fc46a33614589423f283417dc1319ea8eee912affcd0b0cb14
Leaf 16 of 17 · snapshot 2026-08-08T23:22:37Z
CROSS-ORG · THE MOAT

Your agents don't stop
at your company's edge

Access control governs the agents you own. It has nothing to say about a partner's agent acting on your behalf, or yours acting on theirs. MOSS signs a record both sides can verify, so delegation across a company line is proven, not trusted.

FEDERATED PASSPORT · DELEGATION CHAIN CHAIN VERIFIED
ORG A · YOUR COMPANY
procurement-agent
Kicks off a purchase, then delegates fulfilment to a supplier's agent.
signed grant a3f9·7c
ORG B · SUPPLIER
fulfilment-agent
Acts under a passport it can't forge, then hands a sub-task to a logistics provider.
signed grant b1c2·e4
ORG C · LOGISTICS
dispatch-agent
Every action it takes still traces, signed, back to your original intent.
Three companies · one unbroken chain of proof any party verifies the whole chain offline

Identity and access tools stop at your perimeter. A signed record doesn't.

COMPLIANCE

264 obligations
Every one mapped to evidence

Regulators ask for evidence. MOSS maps every obligation to the specific evidence that satisfies it.

OBLIGATION SATISFIED BY EVIDENCE
{{ m.framework }}
{{ m.obligation }}
{{ m.evidence }}
264 obligations mapped across five primary frameworks
{{ seg.count }} {{ seg.name }}
175+ frameworks mapped across EU, US, and international regimes. See all frameworks →
ENTERPRISE

Built for regulated industries

Your security team will run a checklist. MOSS is built to pass it.

MOSS · SECURITY REVIEW PASSING

{{ deployBody }}

{{ sp.k }}
{{ sp.v }}
{{ c }} VERIFIED

Ship AI that
enterprises trust

Every action enforced before it runs, signed as it happens.

MOSS · LIVE GOVERNING
{{ counter }}
ACTIONS GOVERNED TODAY
8ms
KILL-SWITCH LATENCY
100%
ACTIONS SIGNED