Security, access and audit

Access is explicit. State changes are named. Evidence is retained.

Security controls are part of the operating path, from source permissions and immutable snapshots to execution overrides and release gates.

Role-aware knowledge

Ava reads only approved sources. Cross-role disclosure is prohibited by policy and tested before Run.

Immutable snapshots

A document change creates a new corpus snapshot instead of silently rewriting a previous answer.

Named audit trail

Aegis and Elara record who acted, what changed, when it happened and which market or record state was used.

Controlled override

Only a named role can override Aegis policy, and every override remains in the execution record.

Secret separation

Exchange secrets, execution keys and portfolio statements do not enter Nova research logs.

Environment gates

Research, Iris-gated staging and production remain separate environments.

Run compliance pack

The handover contains the controls needed to operate the contour.

  • Role and permission matrix
  • Approved source register
  • Log-retention policy
  • Incident runbook
  • Named operating owner on both sides
  • Hosting region and subprocessors recorded in the Run agreement
Responsibility

See where the system stops and the client decision begins.

View boundaries →