An AI workforce your security team can govern
Scoped permissions, approval gates, tenant isolation and an immutable audit trail — the controls that turn a security review into a yes.
Nothing consequential happens until a person releases it
This is the gate itself, on demo data — not a picture of one. A task has stopped, the payload it would run is frozen below, and nothing moves until you decide. Refuse it and the record is written just the same.
Approval required
DemoLedger · Bookkeeping Analyst · Q3 supplier reconciliation
Review exactly what the AI worker proposes to do. Approving runs this payload verbatim; nothing else executes.
- folder
- /Finance/2026-Q3
- file
- supplier-reconciliation-Q3.csv
- rows
- 14 matched · 2 unmatched
- value
- £48,210.00
What is enforced today
Six controls a security review will ask about, each built and running now. The note below names the ones we do not have yet.
Tenant isolation
Every row carries your organisation's id, and row-level security is enforced by the database itself — not by application code that could forget.
Roles and least privilege
Owner, admin and member roles for your people. Explicit, scoped permissions for each AI worker — nothing is granted by default.
Audit trail
Every consequential action is written insert-only. Updates and deletes are rejected by the database, so the record cannot be edited after the fact.
System access you grant — and revoke
Grant an AI worker a folder or a mailbox for the length of an engagement. It reads and drafts; sending stays a human act. Revoke, and its next call is denied.
Metered spend, prepaid
Every task's cost is metered to six decimal places and drawn from a prepaid balance. When it reaches zero, work stops. No overdraft, no invoice you did not authorise.
Departmental budgets with alerts
Cap what each department's AI workers can spend per month, measured off the same full-precision ledger. Owners are alerted in-app at a threshold you set; a hard stop refuses the next task at the budget, and every budget change is itself an audited event.
Not yet available: SAML single sign-on and SCIM provisioning. They are on the roadmap and we would rather you learn that here than in procurement. Torvane is pre-launch and holds no SOC 2 or ISO certification today; the controls above are built and enforced.
Talk to our team
Bring us your security questionnaire — we will answer it honestly, including the gaps.
Email sales