Platform · Governance

The answers your security review needs.

Governance is not a page in the trust center. It is whether the platform can enforce a rule you wrote. Infrastructure for AI needs guardrails, and Ward is the warden that enforces them: policy evaluated at query time, for every caller, including the ones that are not people.

What it guarantees

Row-level policy, scoped credentials, and an audit log that covers humans and agents equally.

01

Row and column policy evaluated at query time, not in the client.

02

Ward AI drafts access policies from plain English. Nothing binds until a human approves it.

03

SSO/SAML, SCIM provisioning, RBAC.

04

Customer-managed keys. Your region, your retention.

05

One audit log covering every person and every agent in the tenant.

Policy as code.
Not click-admin drift.

The policy plane, kill switch and audit trail your team would otherwise build with a free quarter. Policies are Cedar, written and versioned inside your tenant, and every decision made under them is recorded.

  • Ward AI drafts. You approve.
    Ward AI drafts the Cedar policy from a plain-English brief and nothing binds until you save it. The editor autocompletes actions and entity types against your own models and underlines errors as you type.
  • Scoped per role, tenant, resource
    Finance Agent cannot see labor schedules. Vendor Agent cannot touch shrinkage. US tenant cannot query EU tables. Least-privilege, machine-enforced.
  • Classifications drive access
    Tag a column pii, financial, or operational once. Every agent and query inherits the rule.
  • Who changed what, on the record
    Charter edits, prompt changes, policy updates: logged with name, time, ticket, approver. Diff, roll back, export to your SIEM.
  • Writes need a named human
    Exports, write-backs, schedule pushes. Anything that mutates state gates on a role you define, logged with the approver.
  • Audit any number on the page
    Click a forecast, a margin call, a shrink flag. Ward shows the SQL, source tables, model, parameters, and backtest.
Pause & audit log
One toggle freezes every agent across every tenant, resumes clean, replays nothing. Everything streams to your SIEM as it happens.
Kill switch · JSONL · Splunk · Datadog
Region, tenancy & keys
US stays US, EU stays EU. Single-tenant in your AWS or Azure account on request. KMS or HSM-backed keys; Ward never sees the material.
VPC · data residency · BYOK · CMK · envelope
Insurance & model cards
Cyber and tech E&O on file with an AI rider, COI to procurement in a day. Every number carries a model card with the forecast, the MAPE, and the backtest.
Cyber · tech E&O · AI · forecasts your planners trust
In the console

What this looks like when you actually use it.

Least privilege by default

Read-only credentials, scoped to named schemas. Write access is granted per table and per action. There is no mode in which Ward holds an admin role on your warehouse.

Policy at query time

Row and column policy is evaluated when the query runs, for every caller. A rule enforced in the client is not enforced at all. This applies identically to a person in the console and to an agent.

Full security model guide →

Start with one source.

Deploying is free. The whole console, every connector, and nothing to license.

Read-only to start · your LLM keys · SOC 2 Type II underway · or book a call directly

Find out what your data has been hiding.

Tell us about your operation. We’ll show you the problems Ward catches, and the ones your current tools miss.

Step 1 of 3
What are your goals?
Step 2 of 3
About your operation
Step 3 of 3
Your contact info