Skip to content
Decision-Evidence Operating System

Screenshot Gallery

102 real console screens — not hand-drawn illustrations, screenshots of real, buildable React components — filterable by pillar, role or line of business.

102 screenshots across 9 pillars

102 of 102

The 102 screenshots

  • Welcome
    Welcomeroute designed(designed, not built)

    A00

    Convening TriageComputed GateProvable DecisionsEvidence FabricValidation AutopilotCAT Simulation

    The first-run welcome states the product's model in one line and starts the five-stop tour, which never replays unasked and restarts from Help & glossary.

  • Command home
    Command homeroute live(shipped)

    A01 · Underwriter

    The command home shows your queue, the portfolio pulse figures and anything waiting on a named human, so the day starts from one screen.

  • Command home — actuary
    Command home — actuaryroute live(shipped)

    A01 · Model owner · actuary

    Command home as the actuary sees it: the book’s financial picture leads instead of a work queue — the reserve-movement waterfall and exposure-by-line figures come first, with the actuary’s own pending model runs beneath them.

  • Command home — org admin
    Command home — org adminroute live(shipped)

    A01 · Org admin

    The org admin’s home reads as org health, not a work queue — seats in use, AI-provider pool status and spend, entitlement meters, and the notices waiting on an admin, with submission-to-bind throughput riding beside the provider table.

  • Command home — chair
    Command home — chairroute live(shipped)

    A01 · Chair — second approver

    The chair’s day starts from the approvals-waiting queue: every room whose quorum is complete and whose gate now waits on the chair’s signature, with the decisions-in-flight board leading and dwell-before-ruling beside the gate table.

  • Triage queue — waiting step pending
    Triage queue — waiting step pendingroute designed(designed, not built)

    A02 · Claims lead

    Convening TriageComputed GateCAT Simulation

    The triage queue with the Pending filter on and one row expanded into its waiting-step detail — what is waited on, who may act, and the deadline with its aftermath stated in plain words.

  • Triage queue — claims lead
    Triage queue — claims leadroute designed(designed, not built)

    A02 · Claims lead

    Convening TriageComputed GateCAT Simulation

    The triage queue weighted for the claims lead: the leading figure is FNOL arrivals per day over the storm window, every row carries its own FNOL count, and a reassign action sits beside each one for balancing the team’s load.

  • Triage queue — underwriter
    Triage queue — underwriterroute designed(designed, not built)

    A02 · Underwriter

    Convening TriageComputed GateCAT Simulation

    The triage queue exactly as the underwriter sees it — the default lens made explicit: a header role chip reading Underwriter, and the leading figure narrowed to the ageing of only the items assigned to this seat.

  • Triage queue
    Triage queueroute designed(designed, not built)

    A02 · Claims lead

    Convening TriageComputed GateCAT Simulation

    The triage queue lists every decision waiting in your scope with filters, saved views and bulk actions, and its degraded rows carry their reason inline.

  • Decision record
    Decision recordroute live(shipped)

    A03 · Chair — second approver

    Deliberation ChamberComputed GateEvidence FabricField BenchChange Control & A2A

    One decision record shows its append-only thread, its seal, and the plain-register explanation of what sealed means, with Verify as the one primary action.

  • Decision room — in session
    Decision room — in sessionroute live(shipped)

    A04 · Chair — second approver

    Deliberation ChamberEvidence FabricChange Control & A2A

    A decision room shows every seat's argument including the dissent, splits the verdict choice from the commit, and seals only through the gated confirm that restates the chosen ruling.

  • Decision room — documents dock
    Decision room — documents dockroute live(shipped)

    A04 · Chair — second approver

    Deliberation ChamberEvidence FabricChange Control & A2A

    The decision room with its documents dock open, listing the wording and exhibits attached to the room’s subject — the room list collapses to a strip so the transcript keeps a readable width and nothing is clipped.

  • Decision room — chair at the gate

    A04 · Chair — second approver

    Deliberation ChamberEvidence FabricChange Control & A2A

    A decision room as the chair sees it, quorum complete and the action bar armed for the one signature that can commit: the seat forest plot answers which seat is the outlier, before the ruling is made.

  • Decision room — your proposal
    Decision room — your proposalroute live(shipped)

    A04 · Underwriter

    Deliberation ChamberEvidence FabricChange Control & A2A

    A decision room as its proposer sees it after already approving: the second signature is not theirs to give, so the sealing control renders disabled with its dual-control reason stated beneath it — read as a refused control, never a button.

  • Decision room — seal refused
    Decision room — seal refusedroute live(shipped)

    A04 · Chair — second approver

    Deliberation ChamberEvidence FabricChange Control & A2A

    A decision room’s dual-control seal refused: the second approval window lapsed before its deadline, stated in plain words with the machine code held in the details region — nothing was armed and nothing was sealed.

  • Decision room — ruling committed

    A04 · Chair — second approver

    Deliberation ChamberEvidence FabricChange Control & A2A

    A decision room after its dual-control seal succeeded: Verify this certificate leads as the primary action, both approvers are named in the rail, and the recorded dissent still travels with the record.

  • Persona playbooks
    Persona playbooksroute designed(designed, not built)

    A05 · Validation & compliance

    Deliberation ChamberValidation AutopilotChange Control & A2A

    The playbook list shows every versioned rulebook an AI persona argues from, and its empty state teaches the concept and separates none-exist from none-you-can-see.

  • Playbook editor
    Playbook editorroute designed(designed, not built)

    A06 · Validation & compliance

    Deliberation ChamberValidation AutopilotChange Control & A2A

    The playbook editor versions every change, scores action weights, and routes the one dual-control action through the same arming door as everything else.

  • Playbook diff
    Playbook diffroute designed(designed, not built)

    A07 · Validation & compliance

    Deliberation ChamberValidation AutopilotChange Control & A2A

    The playbook diff shows exactly what changed between two versions on one timeline, so the claim that nothing changed silently is checkable.

  • Calibration drills
    Calibration drillsroute designed(designed, not built)

    A08 · Validation & compliance

    Deliberation ChamberValidation AutopilotChange Control & A2A

    The drills board shows each persona's calibration against its floors with the full interactive reliability figure, and benching happens here before live work.

  • Certificate
    Certificateroute live(shipped)

    A09 · Underwriter

    Computed GateProvable DecisionsEvidence FabricCAT SimulationField BenchChange Control & A2A

    The certificate face renders as a document, states its claims in plain words, and lets any reader re-walk the chain from genesis with both results drawn.

  • Certificate — regulator seat
    Certificate — regulator seatroute designed(designed, not built)

    A09 · regulator

    Computed GateProvable DecisionsEvidence FabricCAT SimulationChange Control & A2A

    The certificate opened by a regulator read-seat: its own origin, no staff rail, a scope banner stating exactly the granted window and its expiry, and verification that runs in the reader’s own browser — this seat’s whole purpose is to verify from genesis.

  • Certificate — validator
    Certificate — validatorroute live(shipped)

    A09 · Validation & compliance

    Computed GateProvable DecisionsEvidence FabricCAT SimulationChange Control & A2A

    The certificate read by validation and compliance: the chain table renders its raw ids inline for this role alone, the primary action is Re-verify chain, and the not-certified list is surfaced first — the boundary read before the claim.

  • Certificate — chain divergent
    Certificate — chain divergentroute live(shipped)

    A09 · Validation & compliance

    Computed GateProvable DecisionsEvidence FabricCAT SimulationChange Control & A2A

    A certificate’s re-walk from genesis recomputed a head that does not match the anchored one: the surface states the mismatch as a full refusal, highlights the divergent link, and offers two recovery paths — report to the issuer, or re-verify.

  • Certificate — chain intact
    Certificate — chain intactroute live(shipped)

    A09 · Validation & compliance

    Computed GateProvable DecisionsEvidence FabricCAT SimulationChange Control & A2A

    A certificate’s re-walk from genesis just finished and every recomputed link matched its anchored value: a green chain-intact banner and a five-row check list, ending in forward actions rather than a dead end.

  • Validation
    Validationroute designed(designed, not built)

    A10 · Validation & compliance

    Deliberation ChamberComputed GateEvidence FabricValidation AutopilotCAT SimulationChange Control & A2A

    The validation home inventories every model with its validation state, because sign-off evidence carries legal weight and only named seats may write it.

  • Run ledger
    Run ledgerroute designed(designed, not built)

    A11 · Validation & compliance

    Deliberation ChamberComputed GateEvidence FabricValidation AutopilotCAT SimulationChange Control & A2A

    The run ledger lists every validation run with its hashes and verdicts, and a run's evidence is asserted on this surface, never assumed from the presence of a row.

  • Evidence packs
    Evidence packsroute designed(designed, not built)

    A12 · Claims lead

    Deliberation ChamberComputed GateEvidence FabricValidation AutopilotCAT SimulationChange Control & A2A

    An evidence-pack composer refusing to compile: one selected run cannot reproduce from a pinned dataset snapshot, so its evidence is ruled inadmissible and the compile button is disabled with the reason stated on the face, not hidden.

  • Evidence packs
    Evidence packsroute designed(designed, not built)

    A12 · Claims lead

    Deliberation ChamberComputed GateEvidence FabricValidation AutopilotCAT SimulationChange Control & A2A

    The evidence-pack builder compiles the documentation behind one decision or one model into a sealed, exportable pack a supervisor can verify.

  • Exposure map — chat docked
    Exposure map — chat dockedroute live(shipped)

    A13 · Underwriter

    Convening TriageEvidence FabricCAT Simulation

    The exposure map with chat docked over it: a context strip states exactly what the chat can see and do to the map, and a real answered exchange shows the action it took — "zoomed map to County Cork" — with citation chips and a why-this-response link.

  • Exposure map
    Exposure maproute live(shipped)

    A13 · Underwriter

    Convening TriageComputed GateEvidence FabricCAT Simulation

    The exposure map on real MapLibre tiles over a sovereign CARTO basemap, with the CRESTA zone choropleth, TIV rings at real county coordinates, and the Storm Ciarán indicative track drawn together.

  • Exposure map — non-sovereign basemap

    A13 · Underwriter

    Convening TriageEvidence FabricCAT Simulation

    The layer catalogue opened to the non-sovereign basemap group, Google Hybrid selected, with a plain-language warning strip stating that tiles in this group leave the EU boundary — the preview itself is real, freely-fetchable imagery, never a faked Google tile.

  • Exposure map — feature inspector

    A13 · Underwriter

    Convening TriageEvidence FabricCAT Simulation

    The map’s inspector dock open on a selected county’s exposure feature, rendered as the same k-card pattern used everywhere else on the console, with that county’s TIV read in context beside it.

  • Exposure map — layer catalogue
    Exposure map — layer catalogueroute live(shipped)

    A13 · Underwriter

    Convening TriageEvidence FabricCAT Simulation

    The full exposure-map layer catalogue open, every domain from Base & Reference through Watch feeds, with opacity sliders only on the two overlays the map actually draws — no row claims a layer the canvas does not carry.

  • Exposure map — degraded
    Exposure map — degradedroute live(shipped)

    A13 · Underwriter

    Convening TriageDeliberation ChamberEvidence FabricCAT SimulationField Bench

    The exposure map’s degraded state: the overlay tile source is unreachable, so the surface says so with a machine code and a plain sentence, disables the dead layers with their shared reason, and offers Retry or the watch health board — the healthy basemap keeps rendering underneath, dimmed, and nothing quantitative is shown stale.

  • Exposure map — actuary
    Exposure map — actuaryroute live(shipped)

    A13 · Model owner · actuary

    Convening TriageEvidence FabricCAT Simulation

    The exposure map as the actuary sees it: the layer catalogue expanded to the technical layers — zone choropleth, gust field, model footprint — beside the accumulation Pareto, the top exposure zones by TIV with the 80%-cumulative line.

  • Exposure map — claims lead
    Exposure map — claims leadroute live(shipped)

    A13 · Claims lead

    Convening TriageEvidence FabricCAT Simulation

    The exposure map as the claims lead sees it: an FNOL-density layer of graduated circles per county replaces the technical layer set, and the overlay figure becomes FNOL arrivals per day instead of a modelling figure.

  • Scenarios
    Scenariosroute live(shipped)

    A14 · Model owner · actuary

    Convening TriageEvidence FabricCAT Simulation

    Scenarios run quarantined what-ifs against your own book under the simulation band, with a working transport, curtain compare and steer validation that recovers in place.

  • Scenario compare
    Scenario compareroute designed(designed, not built)

    A15 · Model owner · actuary

    Convening TriageEvidence FabricCAT Simulation

    Scenario compare locks two viewports to one camera with a curtain and a difference layer, because unlinked panes are a compare in name only.

  • Event room
    Event roomroute designed(designed, not built)

    A16 · Model owner · actuary

    Convening TriageEvidence FabricCAT Simulation

    An event room walks one catastrophe event's financial chain from hazard to gross loss with every link's provenance on the face.

  • Event room — timeline scrub
    Event room — timeline scrubroute designed(designed, not built)

    A16 · Model owner · actuary

    Convening TriageEvidence FabricCAT Simulation

    The event room mid-scrub: the timeline transport active at a specific historic instant, the map and storm arc synced to it — travelled track solid, remaining track dashed, the landfall trigger noted as passed — with the loss-exceedance curve riding beside the arc.

  • External watch
    External watchroute live(shipped)

    A17 · Underwriter

    Convening TriageEvidence FabricCAT Simulation

    The external watch lists every live feed with its freshness and signal, and a proposal a feed raises waits for a named human to arm it.

  • External watch
    External watchroute live(shipped)

    A17 · Underwriter

    Convening TriageDeliberation ChamberEvidence FabricCAT SimulationField Bench

    The external watch board in its stale state: the feed set below quorum, the freshness chart itself refusing to draw rather than showing false confidence, and the dependent trigger binding declining to arm with the reason stated as a status line, not a button.

  • Watch configuration
    Watch configurationroute designed(designed, not built)

    A18 · Org admin

    Convening TriageEvidence FabricCAT Simulation

    Watch configuration declares what each feed may propose and at what autonomy level, and a feed absent from this list cannot reach the product at all.

  • Datasets
    Datasetsroute live(shipped)

    A19 · Model owner · actuary

    Deliberation ChamberComputed GateEvidence FabricValidation AutopilotCAT SimulationChange Control & A2A

    The dataset register lists every training dataset with its snapshot hash, masking state and retention, because a model's evidence starts at its data.

  • Train a model
    Train a modelroute live(shipped)

    A20 · Model owner · actuary

    Deliberation ChamberComputed GateEvidence FabricValidation AutopilotCAT SimulationChange Control & A2A

    The train launcher picks the smallest fitting compute from the sovereign GPU pool, shows cost and quota before dispatch, and can reach a GPU only through the orchestrator.

  • Eval gates
    Eval gatesroute live(shipped)

    A21 · Validation & compliance

    Deliberation ChamberComputed GateEvidence FabricValidation AutopilotCAT SimulationChange Control & A2A

    The eval-gate board shows what every candidate version must pass before anyone can promote it, and the ladder fails closed.

  • Model factory
    Model factoryroute live(shipped)

    A22 · Model owner · actuary

    Deliberation ChamberComputed GateEvidence FabricValidation AutopilotCAT SimulationChange Control & A2A

    The model factory board shows every model's stage on the governed ladder with its gates, serving state and drift, and the memory strip recalls the last failure of each recipe.

  • Model factory — capability radar

    A22 · Model owner · actuary

    Deliberation ChamberComputed GateEvidence FabricValidation AutopilotCAT SimulationChange Control & A2A

    The model factory as the actuary sees it: the trait-radar comparison across claims-severity model versions leads as the hero figure, with the ladder table compressed beside it.

  • Training run
    Training runroute live(shipped)

    A23 · Model owner · actuary

    Deliberation ChamberComputed GateEvidence FabricValidation AutopilotCAT SimulationChange Control & A2A

    A training run shows its live loss figure with the floor on the plot, its five-gate ladder, and a promotion that is a governed dual-control transition, never a deploy.

  • Notebook session
    Notebook sessionroute live(shipped)

    A24 · Model owner · actuary

    Deliberation ChamberComputed GateEvidence FabricValidation AutopilotCAT SimulationChange Control & A2A

    A notebook session is a governed Jupyter kernel spawned only as an orchestrator job on masked samples by default, and its only road to evidence is the recipe export.

  • Partner registry
    Partner registryroute designed(designed, not built)

    A25 · Org admin

    Deliberation ChamberComputed GateEvidence FabricChange Control & A2A

    The partner registry lists every vetted counterparty and its connection state, with suspension reasons on each row rather than in a footnote.

  • Partner vetting
    Partner vettingroute designed(designed, not built)

    A26 · Org admin

    Deliberation ChamberComputed GateEvidence FabricChange Control & A2A

    Vetting walks a counterparty through the admission checks including sanctions screening, and a screening match refuses with the named list and an escalation path.

  • Partner connections
    Partner connectionsroute designed(designed, not built)

    A27 · Org admin

    Deliberation ChamberComputed GateEvidence FabricChange Control & A2A

    The connection monitor shows every open agent-to-agent lane with its traffic and interrupts, and a declined exchange renders as the protocol working, not a fault.

  • Capability bindings
    Capability bindingsroute designed(designed, not built)

    A28 · Org admin

    Computed GateProvable DecisionsEvidence FabricCAT SimulationChange Control & A2A

    A capability binding’s arming attempted by one human alone: the dual-control refusal explains itself in plain words and the second-approver seat renders empty — an honest empty seat, not a filled-in signature.

  • Capability bindings
    Capability bindingsroute designed(designed, not built)

    A28 · Org admin

    Computed GateProvable DecisionsEvidence FabricCAT SimulationChange Control & A2A

    Capability bindings wire every AI control to its skill and autonomy level, and a rendered control whose binding key is absent from the manifest fails the build.

  • Jurisdiction packs
    Jurisdiction packsroute designed(designed, not built)

    A29 · Org admin

    Convening TriageDeliberation ChamberComputed GateProvable DecisionsEvidence FabricValidation AutopilotCAT SimulationField Bench

    Jurisdiction packs declare what each regulator regime enables, and a capability a pack does not grant never renders as a pressable control.

  • Audit replay
    Audit replayroute designed(designed, not built)

    A30 · Validation & compliance

    Deliberation ChamberEvidence FabricField Bench

    Audit replay re-runs a recorded decision path step by step with the dwell figure drawn honestly, and names its rubber-stamp analytics only with notice, disclosure and an appeal path.

  • Settings
    Settingsroute live(shipped)

    A31 · Org admin

    The settings hub with its provenance drawer slid open: the surface line, the source records as hash chips, the as-of stamp and the epistemic legend — the one place a chip-depth role ever sees a raw id.

  • Settings
    Settingsroute live(shipped)

    A31 · Org admin

    The settings hub maps every management surface as a real route grouped by job, with no read-only mirror tabs and no duplicate information architecture.

  • Settings
    Settingsroute live(shipped)

    A31 · Org admin

    The settings hub’s Source repositories tab: connected repos with sync status and timestamps, and Sync, Edit and Remove actions — removing a repo disconnects it, but everything already ingested from it keeps citing correctly.

  • Settings
    Settingsroute live(shipped)

    A31 · Org admin

    Settings on the Data keys tab: masked provider keys with Verify, and the boundary stated on the page in plain words — LLM keys live only in the org AI-provider pool, and writing one here is refused with a named error code, never a silent failure.

  • Progress dock
    Progress dockroute designed(designed, not built)

    A32 · Claims lead

    The console’s progress dock expanded across the bottom of the screen: one row per running job with its stage and progress, Open run and Cancel, and the focused job’s stage timeline drawn out beneath it.

  • Chat — refusal, no provider
    Chat — refusal, no providerroute designed(designed, not built)

    A33 · Claims lead

    Computed GateProvable DecisionsEvidence FabricCAT SimulationChange Control & A2A

    Chat’s honest refusal: this organisation has no AI provider configured, so no answer is fabricated and no shared key quietly fills in — the door points straight to where an admin sets one up, and the question stays waiting in the composer.

  • Chat — undocked
    Chat — undockedroute designed(designed, not built)

    A33 · Claims lead

    Computed GateProvable DecisionsEvidence FabricCAT SimulationChange Control & A2A

    The same console chat, floating free of the content column instead of docked to its side — the window sits clear of the working table so both read whole, with the header’s memory pill still naming what it remembers.

  • Chat
    Chatroute designed(designed, not built)

    A33 · Claims lead

    Computed GateProvable DecisionsEvidence FabricCAT SimulationChange Control & A2A

    The console’s chat panel docked to the right, with the working area reserving its width rather than hiding beneath it — a grounded answer citing the record and its sealed certificate as reference chips, not raw ids in the text.

  • Onboarding
    Onboardingroute designed(designed, not built)

    A34

    Convening TriageComputed GateProvable DecisionsEvidence FabricValidation AutopilotCAT Simulation

    Onboarding turns an authenticated organisation into a tenant that has decided something, and its success criterion is a first sealed decision, not a completed form.

  • Connectors
    Connectorsroute designed(designed, not built)

    A35 · Org admin

    Connectors attach the platform to a carrier's core systems with per-seam health and ACORD mapping rows, and a dead seam renders its age, never a silent gap.

  • Exposure import
    Exposure importroute designed(designed, not built)

    A36 · Model owner · actuary

    Convening TriageComputed GateProvable DecisionsEvidence FabricValidation AutopilotCAT Simulation

    Exposure import mid-wizard on its mapping step: the uploaded schedule is parsed, the column mapping is on screen, and the CRESTA zone-assignment preview states exactly what will be imported, what is excluded, and why.

  • Wording ingest
    Wording ingestroute designed(designed, not built)

    A37 · Underwriter

    Convening TriageComputed GateProvable DecisionsEvidence FabricValidation AutopilotCAT Simulation

    Wording ingest brings policy wordings and delegated-authority agreements into the policy spine as chained, clause-anchored versions.

  • Read-seats
    Read-seatsroute designed(designed, not built)

    A38 · Org admin

    Convening TriageComputed GateProvable DecisionsEvidence FabricValidation AutopilotCAT Simulation

    Read-seats issues the scoped tokens the external partner seats consume, and makes the boundary of each one provable from this screen.

  • Skills
    Skillsroute designed(designed, not built)

    A39 · Org admin

    The skills register lists every dispatchable unit of work with its version and tests, because a binding is only as trustworthy as the skill behind it.

  • Members & seats — invite open
    Members & seats — invite openroute designed(designed, not built)

    A40 · Org admin

    The Members & seats invite modal open: an email is checked against the organisation’s own domain in real time — a public address like gmail.com is refused in place — with plain-language descriptions under each role in the select.

  • Members & seats
    Members & seatsroute designed(designed, not built)

    A40 · Org admin

    Members & seats holds the roster, the pending invites with expiry and auto-reminder, and an invite flow whose sent state is a visible confirmation.

  • Members & seats — managing lens
    Members & seats — managing lensroute designed(designed, not built)

    A40 · Org admin

    Members & seats as the org admin manages it: every row carries full CRUD — change role, move unit, remove behind a danger confirmation that restates the act — and the last owner’s remove control renders disabled with its reason stated.

  • AI providers
    AI providersroute designed(designed, not built)

    A41 · Org admin

    The AI-provider pool holds the organisation's own keys and routing ladder, never renders a per-user credential, and an org with zero keys sees an honest empty instead of a shared fallback.

  • Help & glossary
    Help & glossaryroute live(shipped)

    A42

    Help & glossary defines every product term plain-first with its glyph and where you meet it, hosts the tour restart, and is the target of every term hint in the product.

  • Inbox
    Inboxroute live(shipped)

    A43 · Underwriter

    The inbox is the entry point for everything waiting on you — waitpoints with deadlines, expiry warnings at T-30, and the safe aftermath of anything that lapsed.

  • Submit a risk — property schedule
    Submit a risk — property scheduleroute designed(designed, not built)

    A44 · Underwriter

    The five-step intake wizard takes a broker or cedent submission with derived data instead of re-typed data, warns at the field, autosaves, and never loses an answer on Back.

  • Organisation & units
    Organisation & unitsroute designed(designed, not built)

    A45 · Org admin

    Organisation & units manages the orgs you belong to, each org's business units with per-unit invite policy and leads, and the products and services each unit sells.

  • Plan & billing
    Plan & billingroute live(shipped)

    A46 · Org admin

    Plan & billing shows what each plan opens with prices on the page, the never-paywalled floor stated, and the pass manager whose every grant is a ledger event.

  • Plan & billing — usage meters
    Plan & billing — usage metersroute live(shipped)

    A46 · Org admin

    Plan & billing as the org admin sees it: every entitlement’s usage meter leads, with the one approaching its ceiling flagged in plain words and the never-paywalled floor stated — a meter refuses at its limit visibly, nothing is exceeded silently.

  • Policy library
    Policy libraryroute designed(designed, not built)

    A47 · Underwriter

    Convening TriageComputed GateProvable DecisionsEvidence FabricValidation AutopilotCAT Simulation

    The policy library’s honest refusal when a declared route’s capability is not yet built: the pane says so in plain words and names its own register row, rather than rendering an empty library that would read as "you have no policies."

  • Policy library — list, search active
    Policy library — list, search activeroute designed(designed, not built)

    A47 · Underwriter

    Convening TriageComputed GateProvable DecisionsEvidence FabricValidation AutopilotCAT Simulation

    The policy library in list view with a live search narrowing seven wordings down to the three that match — the same status badges as the grid, and every row action still verb-first.

  • Policy library
    Policy libraryroute designed(designed, not built)

    A47 · Underwriter

    Convening TriageComputed GateProvable DecisionsEvidence FabricValidation AutopilotCAT Simulation

    The policy library is the spine every decision, claim and clause anchor resolves to, with immutable versions, first-class diffs and the document vault's two-stream intake.

  • Decision records
    Decision recordsroute live(shipped)

    A48 · Underwriter

    Computed GateField Bench

    The decision-record list is the append-only ledger of every governed decision in your scope, sorted, filtered and paginated for datasets of tens of thousands of rows.

  • Decision records
    Decision recordsroute live(shipped)

    A48 · Underwriter

    Convening TriageComputed GateProvable DecisionsEvidence FabricValidation AutopilotCAT Simulation

    Decision records replaced by its honest scope refusal: the surface states in plain words whose records are missing a session scope, holds the machine code in the details region only, and never renders an empty table it cannot honestly claim.

  • Decision rooms
    Decision roomsroute live(shipped)

    A49 · Underwriter

    Deliberation ChamberEvidence FabricChange Control & A2A

    The rooms list shows every open and recently sealed decision room in your scope with its deadline, seats and waitpoint state.

  • Verify
    Verifyroute live(shipped)

    A50 · Validation & compliance

    Computed GateProvable DecisionsEvidence FabricCAT SimulationChange Control & A2A

    The verify landing takes a certificate id or pasted link and explains in plain words what verification proves before any button is pressed.

  • Drift board
    Drift boardroute live(shipped)

    A51 · Model owner · actuary

    Deliberation ChamberComputed GateEvidence FabricValidation AutopilotCAT SimulationChange Control & A2A

    The drift board watches every serving model's inputs and outputs against its promotion baseline with control charts, and a breach proposes — never performs — a rollback.

  • Audit log
    Audit logroute designed(designed, not built)

    A52 · Validation & compliance

    Deliberation ChamberEvidence FabricField Bench

    The audit log lists every chain event in scope — grants, seals, corrections, refusals — each linking to the surface it happened on.

  • Build scorecard
    Build scorecardroute designed(designed, not built)

    A53 · Org admin

    The build scorecard renders the derived atom registers and lets any reader verify the chain from genesis in the browser, with both results drawn as full states.

  • Policy
    Policyroute designed(designed, not built)

    A54 · Underwriter

    One policy shows its versions, its clause map, who cites it, and blocks any new version whose anchors no longer resolve rather than silently re-pointing them.

  • Policy — version history open
    Policy — version history openroute designed(designed, not built)

    A54 · Underwriter

    A policy wording’s version history slid open: every prior version listed with its counsel-signed status and View, Compare and Restore-as-new-version actions — restoring writes a new version, it never rewrites the ones before it.

  • Regulator seat
    Regulator seatroute designed(designed, not built)

    A61 · regulator

    Deliberation ChamberEvidence FabricField Bench

    The regulator seat is a read-only external page in its own chrome showing exactly the granted scope with its expiry, and chain verification runs in the reader's browser.

  • Reinsurer seat
    Reinsurer seatroute designed(designed, not built)

    A62 · reinsurer

    Deliberation ChamberComputed GateEvidence FabricValidation AutopilotCAT SimulationField BenchChange Control & A2A

    The reinsurer seat shows the confidence pack a cedent granted — nothing else — with the grant's scope and end date always on screen.

  • Counterparty portal
    Counterparty portalroute designed(designed, not built)

    A63 · counterparty

    Deliberation ChamberComputed GateEvidence FabricChange Control & A2A

    The counterparty portal shows a partner their own lane's state and nothing beyond it, and a declined exchange is rendered as the protocol working.

  • Your claim
    Your claimroute designed(designed, not built)

    A64 · policyholder

    Deliberation ChamberEvidence FabricField Bench

    The policyholder status page shows one person their own claim in plain words with a one-tap record check and a real path to dispute and to a human.

  • Your claim — your documents
    Your claim — your documentsroute designed(designed, not built)

    A64 · policyholder

    Deliberation ChamberEvidence FabricField Bench

    The policyholder’s claim view with the documents dock open, scope-filtered to only the documents that belong to that claimant — the insurer’s own working papers are never listed, and the panel says so.

  • Your claim — policyholder lens
    Your claim — policyholder lensroute designed(designed, not built)

    A64 · policyholder

    Deliberation ChamberEvidence FabricField Bench

    The claim exactly as the policyholder sees it: their own origin, no staff chrome, a single plain-language timeline of where the claim stands, and the one thing this seat can add — the document that was actually asked for.

  • Developer portal
    Developer portalroute designed(designed, not built)

    A65 · developer

    The developer portal documents the verify, embed, corridor and webhook contracts generated from the build blocks themselves, so it cannot drift from what ships.

Send me the paper

Four working papers. A person sends the one you pick — no download wall, and no meeting is booked.

Work out what this costs