Release evidence for AI-assisted engineering

Prove how software was built, reviewed, and delivered.

Harnexis starts with represented GitHub pull-request, review, and CI evidence. It gives leaders and operating teams one accountable next decision, the exact proof behind it, and a signed artifact they can hand to an auditor or customer. Unknown AI use and missing release lineage stay visible.

GITHUB EVIDENCE AVAILABLE NOW · ONE RELEASE-LINEAGE REFERENCE PATH IN EARLY ACCESS · OFFLINE RELEASE PACKAGE IN EARLY ACCESS · EVERY CLAIM SHOWS ITS BOUNDARY
  AI OPERATING BRIEF · ILLUSTRATIVE
NEXTDeveloper Experience owns one scoped review decision
CHANGEreduce dependency-update review from 100% to 20%
EXPECTEDapproximately 120 fewer review decisions per quarter
BOUNDARYcritical and production repositories remain reviewed
OBSERVEDprior docs change removed 147 decisions · 1 caught before merge
DECISION READY owner · scope · expected effect · safety boundary
technical evidence available on demand
What works—and what is next

Recognize the logo. Know the maturity.

A named integration is not a shipping claim. Open any card for its current scope and boundary. Available now means deployed in a provisioned workspace; planned means help shape it, not depend on it yet.

Evidence sources and enforcement points

GitHub is the current evidence path. Every other named provider is explicitly classified beside it.

How to read maturity

Loading current integration boundaries.

Why Harnexis

AI work is spreading faster than accountability.

Coding assistants now invoke subagents, open pull requests, diagnose failures, and recommend production changes. Usage dashboards show activity. Prompt files describe intent. Neither tells an operating team what to do next or proves what its decisions changed.

WHERE
what AI-assistance evidence is actually represented?

See selected GitHub work by repository, observed identity, runtime declaration, and action class without turning a pull request into an unsupported authorship claim.

DECIDE
what should change, and who owns it?

Turn observed evidence into a scoped action with a named owner, expected effect, safety boundary, and measurement window.

PROVE
what happened after the decision?

Keep expected impact separate from observed results, including verified quality, evidence gaps, demotions, and protection outcomes.

The product

From activity to action, without hiding the proof.

The first screen is deliberately plain. Underneath it, Harnexis preserves the append-only records, policy versions, provenance, verified outcomes, and authority observations technical teams need to trust the conclusion.

01 · OBSERVE

Start with real history

Import read-only GitHub pull-request, review, and CI evidence. No new approval inbox is required to see the first posture.

02 · EXPLAIN

One operating brief

Show where AI work appears, what evidence is missing, and which scoped action a named operating team should consider next.

03 · BOUND

Change only within limits

Define an exact repository, branch, path, exclusion, and size boundary. Harnexis verifies which changes match from exact file evidence before any separate policy decision.

04 · MEASURE

Show what changed

Compare the expected effect with observed post-decision evidence. Every simplified statement resolves to technical records.

A safeguard people immediately understand

The prompt says “ask first.” The credential still says DROP.

Instructions tell an agent what it should do. They do not remove what its credential can do. Harnexis makes that gap visible, helps prepare a customer-owned least-privilege correction, and records how and when the resulting boundary was observed.

Declared only

A rule the agent must remember

CLAUDE.md says to confirm destructive actions. The production-debug credential still owns the database.

database.dropAVAILABLE
table.truncateAVAILABLE
role.assume-ownerAVAILABLE
Planned reference path

A boundary enforced outside the model

The accepted design has the customer apply least privilege, then Harnexis independently read effective authority. That provider path is planned, not deployed today.

schema.inspectALLOWED
database.dropUNAVAILABLE
execution modePROPOSE-ONLY
evidence strengthCHALLENGE-TESTED
observed at12:00 UTC
expires at13:00 UTC

Scoped assurance, never magic: every claim names the agent identity, action class, environment, enforcement points, observation time, expiry, maximum drift-detection interval, and evidence strength. Point-in-time evidence does not claim continuous or execution-time protection. Unknown credentials or bypass paths produce a critical finding — never a green badge.

How an approved decision becomes a control

More autonomy is earned in small, reversible steps.

Technical teams can inspect the underlying tier, policy threshold, action class, blast radius, verification record, demotion trigger, and authority boundary. Executives do not need to learn those objects to understand the decision.

TIER 1 · SUPERVISED

Every action reviewed

The default for every new agent and action class. Humans see and approve each proposal; every verdict feeds the ledger.

EARN TIER 2 → clean approval streak · zero verified failures · policy thresholds met
TIER 2 · SPOT-CHECKED

Sampled oversight

The agent acts; humans review a policy-defined sample. Verified outcomes keep the trust score honest between checks.

EARN TIER 3 → sustained verified record at sample rate · blast-radius history clean
TIER 3 · AUTONOMOUS

Within bounds

Destination state: unsupervised inside an explicit blast radius, with a verified failure triggering coordinated demotion. Automatic enforcement and demotion are planned.

PLANNED → customer-owned enforcement · independent read-back · measured demotion
Who uses Harnexis

One shared product. Different operating decisions.

CTO · VP Platform

Know what needs attention

See where enrolled AI work appears, what material evidence gaps remain, which operating team owns the next decision, and what prior decisions changed.

Platform · Developer Experience

Own the scoped change

Move from a noisy estate to a concrete action with scope, expected effect, safety boundary, measurement window, and technical evidence.

Security

See permission exposure

Prompt rules receive no security credit. Inspect which destructive capabilities remain available, how strong the latest evidence is, when it expires, and what identities are uncovered.

Risk · Compliance · Audit

Reconstruct the conclusion

Follow a simplified statement back to the action, human verdict, policy version, provenance, verified outcome, and authority observation that support it.

Why now

Coding assistants gained subagents. Accountability did not scale with them.

NOW
AI work already spans multiple harnesses

Claude Code, Codex, OpenCode, service identities, and subagents create one operating problem even when durable child identity is unavailable.

OOPS
one destructive action can be unrecoverable

A circuit breaker protects the next action. It cannot restore a deleted database; destructive authority must be removed at the enforcement point before an incident.

PROOF
leaders need results, not another activity chart

A decision should name its owner and expected effect, then return with observed quality, rework, protection outcome, and an honest evidence boundary.

Evidence & Audit

Answer the auditor’s questions with the evidence you actually have.

Choose the review you are preparing for across internal oversight, NIST AI governance, secure AI development, EU AI Act, or EU Cyber Resilience Act evidence packs. See what current evidence supports, what remains, and the next action—then share the exact result as PDF, HTML, or JSON.

01 · REUSE

One evidence foundation

The report reuses repository scope, ownership, human decisions, outcomes, coverage gaps, retention policy, retrieval manifests, and canonical references already represented in Harnexis.

02 · RESOLVE

Start with the first gap

No hidden compliance score. Every unanswered question names what remains and the next evidence action an accountable team can take.

03 · SHARE

The right artifact for the recipient

Give a reviewer a deterministic PDF, use standalone HTML for searchable inspection, or send versioned JSON into a GRC workflow. When integrity matters, create a signed HTML/JSON package they can return and verify.

04 · MAINTAIN

Prove the evidence lifecycle

Confirm the customer-approved minimum period, inspect represented coverage, and run a bounded retrieval check. Versioned readiness packs reuse that proof without turning it into a legal conclusion.

Need SOC 2, ISO/IEC 42001 or 27001, DORA, NIS2, FedRAMP 20x, or another review? Request a maintained mapping; availability, licensing, scope, and price are confirmed before commitment. Package verification proves signer and file integrity, not evidence truth or completeness. Harnexis does not certify compliance, provide legal advice, determine framework applicability, or replace an auditor.

Trust, computed — not vibes.
DETERMINISTIC CHECKS AGAINST REAL SYSTEM STATE · NEVER LLM SELF-ASSESSMENT
Simple, scope-based pricing

Start with proof. Pay for engineering scope, not agent count.

Connect a bounded scope, see what Harnexis can support with evidence, and expand only when continuous observation or stronger controls are useful. There are no separate charges for transient agents, subagents, tokens, evidence records, or viewers.

What counts as an active engineering contributor?

A unique contributor who committed to a connected private repository during the preceding 90 days. It measures the engineering scope Harnexis observes; it is not a login seat. Repository bands keep ingestion predictable.

Unlimited agents and viewers
No surprise usage overages
Evaluate

Assessment

FreeFounder-assisted · no payment card

See your first evidence-backed operating brief before committing to continuous observation.

  • One GitHub organization
  • Up to 5 selected repositories
  • 90-day evidence lookback
  • AI Portfolio and executive brief
  • 14 days of provisioned access
A bounded assessment, not continuous monitoring.
Request the assessment
Continuous evidence

Team — Early Access

$750per month · billed annually

Continuous visibility and prioritized action for one operating team.

  • Up to 25 active contributors
  • Up to 10 connected repositories
  • Unlimited agents and viewers
  • Continuous GitHub observation
  • AI Oversight Core readiness reports
  • 90-day evidence retention
Provisioned access today. Self-service billing is not yet available.
Request early access
Scoped engagement

Enterprise — scoped

CustomAnnual agreement

Organization-scale evidence, deployment, retention, compliance, and support.

  • Larger contributor and repository scope
  • Contracted organization reporting boundary
  • Negotiated multi-pack audit-readiness coverage
  • Private deployment options
  • Extended retention; legal hold remains planned
  • Premium support requirements
Availability and delivery scope are identified by canonical maturity entry in the statement of work.
Discuss Enterprise

Current customer access is provisioned. Published prices are packaging anchors, not maturity claims. Assessment and Team use the current GitHub-centered path. Business, Enterprise, and proof engagements identify included canonical maturity entries and any separately accepted planned work in the statement of work.

Start here

Start with your GitHub history. Leave with an operating brief.

The read-only import shows what selected GitHub evidence represents, which review and CI outcomes exist, and where the strongest gaps remain. One GitHub Actions-to-Fly release-lineage path, its offline release package, and its bounded in-toto interoperability proof are Early access; human-credential provenance and enforcement remain explicit planned proof paths.

Prospect and design-partner inquiries · [email protected]

NOW ACCEPTING 2–3 DESIGN PARTNERS RUNNING CODING OR SRE AGENTS IN PRODUCTION