30-Day Runtime Engagement • Zero Code Changes

Observe first. Enforce later.

A Shadow Compliance Audit runs Gateplex in passive mode alongside your agents for 30 days, with zero production downtime. Nothing is blocked and nothing is held. At the end you receive a signed report of what would have been.

Initiate Scoping Call Private VPC Compatible • SAMA & QCB Aligned

Shadow Diagnostic Simulator

[PASSIVE AUDIT RUNTIME: ACTIVE]

0

Actions Blocked

14,290

Evaluated

Live sample streamObservation only

14:22:08.419 UTC

[SHADOW: WOULD_BLOCK]

treasury-settlement-agent

cross_border_transfer.execute

14:22:09.104 UTC

[SHADOW: WOULD_HOLD]

credit-decision-agent

customer_limit.override

SHA-256 HASH VERIFICATION ENABLED

How it runs.

  1. [PHASE 01]

    Scoping

    We agree which agents, systems, and jurisdictions are in scope, and which rule set reflects your obligations.

  2. [PHASE 02]

    Connection

    Your agents call the intercept endpoint in observation mode. No agent behaviour changes and no verdict is enforced.

  3. [PHASE 03]

    Observation

    For 30 days, every action is evaluated and recorded against the agreed policy, producing a hash-chained record.

  4. [PHASE 04]

    Analysis

    We review the record with you: which rules would have fired, on which agents, and under which regulatory obligations.

  5. [PHASE 05]

    Report

    You receive a signed report and a regulatory gap assessment you can put in front of a committee or a regulator.

What you receive, and what you need.

Deliverables

Signed Audit Report

Actions observed, rules that would have fired, and the verdict distribution across agents.

Regulatory Gap Matrix

Findings mapped to the frameworks that apply to you, including the EU AI Act and relevant GCC and UK obligations.

Production Policy Set

A concrete rule configuration to move from observation to enforcement, if you choose to.

PrerequisitesInitial connection requires < 15 minutes of engineering time

At least one agent in active development, pilot, or production

The audit measures real or near-real activity, not a purely hypothetical use case.

An owner on your side

Typically compliance or risk leadership, with an engineer available for the initial connection.

Agreement on scope

Which agents and jurisdictions are included, settled before day one.

Engagement boundary

What it is not.

Enforcement

No action is blocked or held during the audit. Enforcement is a separate decision you make afterwards.

A penetration test

We assess governance and evidence, not application or infrastructure vulnerabilities.

A legal opinion

The report is a factual and technical assessment. Your counsel remains responsible for legal conclusions.

A free trial

The audit is a paid, fixed-fee engagement with a defined deliverable.

Request an audit.

Tell us what your agents are doing today and we will respond within two business days with scope and fee.

Request Audit Scoping & Pricing

Strictly confidential. Scoped under mutual NDA upon request.

TLS 1.3 Encrypted • No Marketing Spam • 48-Hour Response SLA

We use these details only to respond to your request.