Trust you can inspect.

Inspect the facts about data, authority, execution, evidence, deployment, and current assurance status.

[n.
01
/
07
]
> Trust and proof

/ Start with the questions
your company will ask.
/

See where Athena runs, who keeps authority, what an agent can touch, and which record the organisation keeps.

Where does our data go?

A dedicated Athena deployment in a named EU region.

Each organisation receives its own Athena deployment. Your code never leaves your Athena deployment.

Aelethion OÜ, TallinnNamed EU regionOne deployment per organisation
[n.
02
/
07
]
> One correlated record

/ Four questions.
One connected record.
/

A single identifier keeps authority, the request, the action or refusal, the outcome, and supporting evidence together.

correlation_idath_7f2c…91a
01

Who approved it?

The named person and authority behind the decision.

02

What was allowed?

The exact request, concrete details, and supported scope.

03

What did the agent do?

The action or refusal and its recorded outcome.

04

What changed?

The evidence, retained state, and result the organisation can inspect.

[n.
03
/
07
]
> Offline verification

/ Take the evidence.
Verify it without us.
/

A third party can verify offline against the relevant trust roots and verifier material. Each mechanism still has a defined technical boundary.

01

Export

Take the signed record, evidence envelope, verifier material, and relevant roots out of the live service.

02

Check

Verify integrity, origin, transparency-log inclusion, and the supported technical proof with the published verifier.

03

Retain

Keep the portable evidence pack with the organisation's own review, audit, or incident material.

athena-verify evidence-pack.json --roots pinned-roots.json✓ integrity✓ origin✓ inclusion✓ supported proof
[n.
04
/
07
]
> Regulation and standards

/ Built for the rules.
Evidence, not badges.
/

Policies say what should happen. Athena produces evidence of what actually happened.

// EU AI Act · Law, from 2 August 2026Athena ties every action to the person who authorised it, and keeps the record that shows it.
// Cyber Resilience Act · Law, from 11 September 2026Athena finds real weaknesses, proves each one, and confirms when a fix has closed it.
// ISO/IEC 27001 · Voluntary standardAthena shows who was allowed, what they did, and that security controls actually ran.
// ISO/IEC 42001 · Voluntary standardAthena links AI activity to human authority, and keeps the operating record an audit needs.

The first two are law. The ISO standards are voluntary, and often become contractual through procurement. Athena produces the evidence and audit trail these obligations call for. It is not a certification service, and responsibility for compliance remains with your organisation.

[n.
05
/
07
]
> Data and deployment

/ A named region.
A dedicated deployment.
/

Aelethion OÜ is established in Tallinn, Estonia. Each organisation receives a dedicated Athena deployment in a named EU region.

// LocalityYour code never leaves your Athena deployment.
// TenancyOne dedicated Athena deployment per organisation.
// RegionThe deployment is placed in a named EU region.
[n.
06
/
07
]
> Procurement facts

/ Current facts.
No borrowed badges.
/

Commercial and assurance status belongs in a diligence table, not in the product promise.

ItemStatusDetail
Dedicated EU deploymentAvailable

One Athena deployment per organisation in a named EU region.

Offline evidence verificationAvailable

Export verifier material and check supported records against the relevant roots.

Security review, DPA and subprocessorsOn request

Available during a qualified procurement process.

SOC 2Not held

Aelethion does not borrow a provider's certification.

ISO 27001 and SecNumCloudNot held

No certification claim is made on this site.

[n.
07
/
07
]
> Trust FAQs

/ Questions for security,
legal, and procurement.
/

Short answers to the questions that determine whether Athena can enter a real buying process.

// 001Where is Athena deployed?

Each organisation receives a dedicated Athena deployment in a named EU region. Aelethion OÜ is established in Tallinn, Estonia.

// 002Does governance mean a person approves every action?

No. Routine work proceeds inside granted authority. Athena requires a named decision where the organisation defines the concrete external action as consequential.

// 003What can we verify offline?

Exported signature chains, decision receipts, evidence envelopes, and supported technical proofs can be checked against the relevant roots and verifier material without relying on the live service.

// 004Can Rewind reverse an external side effect?

No. Rewind restores Athena workspace state. An email, payment, deployment, or other completed external effect needs a compensating action.

// 005What can we review during procurement?

Security review material, data-processing information, and subprocessor information are available during a qualified review. Aelethion does not claim SOC 2, ISO 27001, or SecNumCloud certification.

//
[#people]
&
[#agents]
//
[#people]
&
[#agents]
//
[#people]
&
[#agents]
//
[#people]
&
[#agents]
//
[#people]
&
[#agents]
//
[#people]
&
[#agents]
//
[#people]
&
[#agents]
//
[#people]
&
[#agents]
//
[#people]
&
[#agents]
//
[#people]
&
[#agents]
//
[#people]
&
[#agents]
//
[#people]
&
[#agents]
//
[#work]
&
[#proof]
//
[#work]
&
[#proof]
//
[#work]
&
[#proof]
//
[#work]
&
[#proof]
//
[#work]
&
[#proof]
//
[#work]
&
[#proof]
//
[#work]
&
[#proof]
//
[#work]
&
[#proof]
//
[#work]
&
[#proof]
//
[#work]
&
[#proof]
//
[#work]
&
[#proof]
//
[#work]
&
[#proof]
Athena by Aelethion

See Athena run
[ one of your workflows ]

Start security review
//
[#people]
&
[#agents]
//
[#people]
&
[#agents]
//
[#people]
&
[#agents]
//
[#people]
&
[#agents]
//
[#people]
&
[#agents]
//
[#people]
&
[#agents]
//
[#people]
&
[#agents]
//
[#people]
&
[#agents]
//
[#people]
&
[#agents]
//
[#people]
&
[#agents]
//
[#people]
&
[#agents]
//
[#people]
&
[#agents]
//
[#work]
&
[#proof]
//
[#work]
&
[#proof]
//
[#work]
&
[#proof]
//
[#work]
&
[#proof]
//
[#work]
&
[#proof]
//
[#work]
&
[#proof]
//
[#work]
&
[#proof]
//
[#work]
&
[#proof]
//
[#work]
&
[#proof]
//
[#work]
&
[#proof]
//
[#work]
&
[#proof]
//
[#work]
&
[#proof]