Product

One appliance. Five connected stages. Your infrastructure.

MERIDVAR combines an enterprise AI governance layer with an admission gateway that can refuse an AI request before the model provider is contacted. You install it. You operate it. There is no MERIDVAR cloud.

Walkthrough

One AI system, start to evidence.

MERIDVAR CONSOLEILLUSTRATIVE

AI inventory

Systems this appliance observed in traffic, or a person declared.

Support reply assistantObserved in gateway trafficCandidate
Contract summariserDeclared by an operatorDeclared
Unsanctioned chat serviceFound in an uploaded proxy logCandidate
Legacy translation botDeclared by an operatorRetired

An observation never becomes a declaration on its own. A person confirms it. An empty inventory means nothing was recorded, not that no AI is in use.

Illustrative interface with invented example data. It shows behaviour documented for the current release and is not a screenshot of a customer environment.

Capabilities

What is in the appliance today.

Every item below is documented as shipped in the current release.

Discover

AI inventory

A register of AI systems observed in traffic or declared by a person, each with provenance, owner, purpose, vendor, models and lifecycle status.

Discover

Shadow AI discovery

Traffic compared with your sanctioned provider list, in off, observe or enforce mode. Proxy and DNS logs can be uploaded for traffic that never touched the gateway.

Discover

Agents and MCP servers

An agent registry with signed identities and a declared MCP server inventory with tool level risk. Endpoint agents detect local AI tools.

Assess

Versioned questionnaires

Three shipped questionnaires: AI system baseline, AI vendor due diligence, AI agent and MCP server review. A published version never changes.

Assess

Rules based risk classification

Low, Moderate, High or Critical, from published rules, with a reason code for every factor. The same facts always give the same level.

Approve

Reviews and approvals

Privacy and security reviews with findings and conditions. Approval with separation of duties, a pinned basis and an end date.

Approve

Vendor governance

Each vendor's own classification and approval, and every AI system that depends on it.

Control

Admission gateway

Seventeen stages. Prompt DLP in ten categories, threat detection, data residency, vendor requirements, team budgets, approved models, OIDC and agent signatures.

Prove

Evidence and audit

An append only, hash chained log with optional Ed25519 signatures, an integrated status per subject and a downloadable audit package.

How Control works

Three ways in. One pipeline. A refusal that never leaves.

Any licensed, enforcing stage may refuse. After a refusal every later stage is skipped, the provider is never called and nothing is billed. The refusal names the rule that caused it.

  • OpenAI compatible API. What an SDK, a coding assistant or an agent framework uses. Streaming is supported.
  • Console playground. For testing and demonstrating a policy before it meets real traffic.
  • Proxy capture. A PAC file and HTTP CONNECT for traffic nobody pointed at the gateway on purpose.
  • Whole request scanning. String content, content blocks, system messages, tool call arguments and tool results.
  • Live dispatch. Anthropic, OpenAI, Azure OpenAI and xAI, plus a self hosted model endpoint.

Architecture

Where MERIDVAR sits.

REFERENCE ARCHITECTURESINGLE TENANT APPLIANCE
MERIDVAR reference architectureCallers on the customer network reach AI providers through the MERIDVAR appliance, which runs five connected stages: discover, assess, approve, control and prove. Security, privacy, risk, finance and audit teams read one shared record. Nothing leaves the customer network to MERIDVAR.YOUR NETWORKOUTSIDE YOUR NETWORKPeopleTokens per personAI applicationsOpenAI compatible APIAI agentsSigned identitiesMCP serversDeclared inventoryUnmanaged trafficPAC and proxy captureMERIDVAR applianceOne organisation. One appliance. No control plane in our cloud.DISCOVERInventory · shadow AI01ASSESSQuestionnaires · risk rules02APPROVEReviews · approvals03CONTROLAdmission gateway04PROVEEvidence log · audit package05Model providersAnthropic · OpenAI · Azure OpenAI · xAISelf hosted modelsYour own endpointSaaS AI servicesSeen through logsADMITTED REQUESTS ONLYNO TELEMETRY TO MERIDVARRUNS WITHOUT INTERNET ACCESSONE SHARED RECORDSecurityPrivacyRisk and complianceFinanceAuditVisibility, policy, control, evidence and spend, read from the same appliance by every team that answers for AI.
Controls apply to traffic routed through the gateway. Visibility of other traffic depends on uploaded logs, endpoint agents and declarations.
QuestionCloud delivered AI controls, typicalMERIDVAR
Where is prompt content inspected?Vendor infrastructureYour network
Where do governance records live?Vendor platformYour volume
Is there a new processor in the data path?YesNo
Does it operate without internet?NoYes, once installed, including licensing and signed updates
TenancyMulti tenantSingle tenant appliance

Comparison of typical deployment architecture from public vendor documentation. Several vendors also offer customer operated components. Not a legal claim.

What we have measured

Evidence for the product, held to the same standard.

Zero calls on refusal

23 gateway tests against a provider that logs every request received. Every refusal made zero calls. Every admission made exactly one.

No identifier in clear

Appliance state searched for every identifier sent through the gateway. All findings were stored masked.

Offline updates

A signed incremental update applied to a real appliance with no internet access. Licences verified on the appliance.

Governance at scale

Status for 5,000 AI systems computed in about 70 milliseconds.

Deployment model

Yours to run. Yours to keep.

MERIDVAR is delivered as software you install and operate. The architecture is the assurance: what never leaves your environment cannot be exposed by ours.

Self hosted

The appliance runs on a host you control, inside your own network.

Single tenant

One appliance serves one organisation. No other tenant's data sits beside yours.

Customer controlled

Your policies, your keys, your evidence, on your volume. You decide who has access.

No vendor cloud required

There is no MERIDVAR control plane in our cloud and no new data processor in your AI data path.

No vendor telemetry

The appliance sends us nothing. With no integrations configured it makes no external call.

Offline capable

Once installed it runs without internet access, including signed licences and signed updates.

See MERIDVAR refuse a request on your own network.

A working session with the founder. We install the appliance with you, route a test request and walk through the evidence it leaves behind.