Missing evidence is labeled missing; planned controls are not presented as deployed controls.
Latency and capacity
No production p99 authorization-gate latency or capacity SLA is published yet. Browser-demo microseconds are local simulation timing and must not be used for production sizing. A pilot must pre-register server-side p50/p95/p99, timeout, and saturation measurements.
Availability and failure mode
BrainSignal begins in shadow mode. A mandatory fail-closed gate can stop spend, so enforcement requires a buyer-approved availability target, timeout behavior, queued/manual exception path, break-glass ownership, and auditable bypass policy. No universal degraded-mode policy is claimed today.
Integration surface
Named rails describe categories the authority model can govern; they are not certified connector claims. The public demonstration uses /v1/sentinel/evaluate. Production webhook, authentication, connector, and ERP contracts remain buyer- and rail-specific until published.
Settlement reconciliation
An authorization receipt can bind the proposed action and later rail reference, but final settlement, return, reversal, and dispute status require rail-specific ingestion. No complete multi-rail settlement adapter matrix is claimed. A pilot must name the authoritative outcome feed and reconciliation owner.
Portable evidence and keys
The public receipt specification, refusal demo, and open package are inspectable. Independent multi-party custody, external anchoring, key rotation, revocation distribution, and recovery exercises remain operational validation work.
Security and compliance
Public source has a security policy. BrainSignal does not currently claim SOC 2 certification, a completed independent penetration test, universal PCI scope exclusion, a published DPA/subprocessor schedule, or committed data-residency regions.
Pricing and packaging
No fixed BrainSignal price is published. Initial work is a scoped design-partner pilot; commercial terms depend on workflow, evidence retention, integrations, support, and deployment boundary. Titan Guard is separately available through AWS Marketplace.
Customers and efficacy
No named customer deployment or production fraud-loss result is claimed. Current public results are internal synthetic evidence. Customer outcomes will be added only after a pre-registered evaluation and buyer-approved disclosure.
Patents and programs
Patent counts are not used as buyer-facing product evidence because a public patent schedule has not been published. Startup credit and enablement programs are labeled as programs used—not customer, channel, integration, or validation partnerships.
Evaluation sequence
- Map one authority boundary.
- Run shadow decisions beside the existing workflow.
- Measure latency, correctness, availability, and review burden.
- Validate reconciliation and key operations.
- Only then consider mandatory enforcement.