A distributed ledger designed for audit trails, regulatory evidence and AI-driven compliance analysis, exposed through a Model Context Protocol server.
v0.1.0-alpha // SOC 2 Type II in progress
The Problem
When regulators or auditors request proof, organizations must reconstruct events from systems that were never designed to produce cryptographically verifiable evidence.
Logs stored in mutable databases can be altered, deleted, or corrupted without any trace of modification.
Evidence scattered across disconnected systems with no shared timeline or unified source of truth.
Weeks of manual forensic analysis to reconstruct event timelines when auditors or regulators request proof.
Non-verifiable event records that AI agents cannot reliably reason about for automated compliance checks.
The Solution
A distributed ledger infrastructure purpose-built for recording regulatory and operational evidence. Every relevant event becomes a cryptographically sealed record with provable chronology and tamper detection.
Each evidence record in VeriLedger contains everything needed for independent verification: the event data, its cryptographic hash linked to the previous record, a digital signature from the issuing system, and a qualified timestamp from an external authority.
Append-only. Records cannot be modified or deleted after creation.
Provable chronology. RFC 3161 qualified timestamps from external TSAs.
Tamper detection. Any modification breaks the hash chain.
The Product
A technical platform, not just a blockchain. Three distinct layers that work together to capture, enrich, and expose verifiable evidence.
LAYER 01
A permissioned distributed ledger optimized for audit events, regulatory evidence, and compliance checkpoints.
LAYER 02
Off-chain infrastructure that enriches records with structured metadata, compliance rules, and regulatory context.
LAYER 03
A Model Context Protocol server that allows AI agents to query evidence, reason about compliance, and generate audit reports.
How It Works
Enterprise systems emit compliance events via webhooks, CDC, or REST API.
SHA-256 hash computed and Ed25519 digital signature applied to the event.
RFC 3161 qualified timestamp obtained from an external TSA authority.
Record appended to the hash-chained ledger with reference to previous hash.
Periodic Merkle root computation and external anchoring for batch verification.
Evidence retrievable via REST API or MCP server for AI agents and auditors.
Use Cases
Maintain verifiable evidence of KYC/AML activities, transaction monitoring, and regulatory reporting with cryptographic proof.
Pre-structured evidence packages ready for internal and external auditors. No more weeks of manual reconstruction.
AI agents analyze verifiable records and produce compliance reports backed by cryptographic proof via MCP.
Chronologically ordered records with qualified timestamps that support court-admissible evidentiary workflows.
Why VeriLedger
VeriLedger is evidence infrastructure, not an append to your SIEM.
AI-Native
Modern compliance tools will increasingly rely on AI agents. VeriLedger provides structured, machine-readable evidence accessible through the Model Context Protocol.
Structured evidence records
Every record follows a consistent schema that AI agents can parse and reason about.
Context-aware queries via MCP
Agents query evidence using natural language through the Model Context Protocol server.
Automated reasoning over provable facts
AI agents can verify evidence integrity before generating compliance reports or making decisions.
Regulatory Alignment
VeriLedger is designed to align with the evolution of European trust infrastructure. The eIDAS2 regulation introduces the concept of Qualified Electronic Ledgers — a new trust service category for distributed ledgers that meet specific security, governance, and interoperability requirements.
Our long-term vision is to support infrastructures capable of operating within the European trust services ecosystem, providing organizations with a credible path toward regulatory compliance as these standards mature.
TRUST SERVICES
Qualified Electronic Ledgers
A new eIDAS2 trust service category for distributed ledgers that record data with a presumption of accuracy and integrity.
TIMESTAMPS
Qualified Timestamps
RFC 3161 integration with qualified TSA providers for legally binding time proof across the European Union.
COMPLIANCE
Future-Proof Architecture
Positioned ahead of regulatory requirements so organizations can adopt now and certify as standards are finalized.
Architecture
Security
Append-only architecture. No record can be modified or deleted after creation. Any tampering breaks the hash chain.
SHA-256 hashing and Ed25519 digital signatures on every record ensure provable integrity and non-repudiation.
RFC 3161 TSA integration provides legal-grade time proof from independent qualified timestamp authorities.
Role-based access control with a complete audit trail on every query and administrative action.
European hosting with configurable data residency policies. Full control over where evidence data is stored and processed.
Periodic Merkle root computation enables batch verification and external anchoring for independent audit proof.
VeriLedger is currently in private alpha. Request early access for your compliance team or become a design partner.
Private Alpha // SOC 2 in progress // eIDAS2 aligned