- decision
- DENY · credit application
- policy_snapshot_id
- 018f9a1e-6d4c-7a3b-9f52-0c1d2e3f4a60
- signature_kid
- msk_demo_v2 · ed25519Signed at decision time. Verify it against key material you obtain independently.
Modern operational systems are becoming increasingly automated, interconnected, and AI-assisted. The accountability burden does not disappear when the systems change.
Most institutions still reconstruct consequential decisions retrospectively from fragmented operational evidence. MeshQu preserves independently verifiable accountability records at the moment decisions occur.
Audit becomes retrieval, not reconstruction.
Today, decisions are defended from fragments.
A workflow approves a $42,140 transfer.
Tuesday, 14:22 UTC. A fraud rule fires, an override is set, the transfer goes through. The system moves on.
Compliance asks for the override reason.
“Why did this decision pass? What did the system actually see at the time?”
The team reconstructs from whatever they can find.
None of these were created as proof. All of them depend on memory, access, and time.
- Logs
- Emails
- Slack threads
- Tickets
- Screenshots
- Dashboards
- CSV exports
- Wiki pages
A story is told, not a record retrieved.
Best reconstruction. Plausible narrative. Not authoritative, not verifiable, not portable. The decision is defended, but never proven.
The same decision, preserved as a signed receipt at execution time.
One signed object, issued in ~50 ms, replayable years later — independent of the systems that produced it.
What MeshQu is, in plain terms.
The rules that applied.
We hold the institution's policies — the thresholds, the authority levels, the conditions, the exceptions — in a form that doesn't drift. When a decision is made, we know exactly which version of the rules was in force at that moment.
The decision that was made.
We run the decision against those rules at the moment it happens. Who made it, what they saw, what the rules said, what the outcome was — all of it captured in one place, in one shape, whether the decision was made by a person, a workflow, or an AI.
The record that proves it.
We emit a signed receipt — a portable, replayable record that holds the decision in the form it was made. Years later, when someone asks how it happened, the answer is retrieved, not reassembled. The proof outlives the systems that produced it.
Three things, one shape — every consequential decision the institution makes.
The Decision Receipt.
A Decision Receipt preserves the record of the decision itself.
- What happened
- Why it happened
- Who or what made it
- The evidence available
The systems can change. The proof remains.
- decision
- DENY
- policy_snapshot_id
- 018f9a1e-6d4c-7a3b-9f52-0c1d2e3f4a60
- timestamp
- 2026-07-15T09:24:11.000Z
- integrity_hash
- b20158d4684cd066acffea0cf5def73a6d364814ef074cc51d0909cb894ba8b6
- signature_kid
- msk_demo_v2 · ed25519
- transparency_anchor
- null · not anchored
A receipt does not prove that the decision was correct, that its inputs were true, that the outcome was fair, or that it was lawful everywhere. It does not prove that a named human personally acted, or that a model followed the rationale it stated.
The same shape regardless of which actor produced it. A receipt records who or what decided, under which policy, on what evidence — and the object is identical whether that was a person, an AI system, or a platform you already operate.
- HumanA person approves, rejects, overrides or signs off — and the record is produced as they act, not reconstructed later.
- AIAn agent or model requests a consequential action, the action is gated against policy, and the authorisation is recorded.
- An existing platformA workflow, rules engine or case system you already run keeps running — MeshQu records the decision boundary inside it.
A valid signature shows that a trusted key signed this exact receipt and that its signed contents have not changed. It does not show that the decision itself was correct or that its inputs were true.
Mechanically, the integrity hash binds the receipt’s contents and the signature binds that hash, the timestamp and the key identity. A verifier checks both, and recomputing the hash is the step that catches an edit.
The same primitive, across regulated operations.
Sanctions escalation
A velocity-anomaly alert escalates from screening to human review to override. Each step seals into a replayable accountability chain.
AI-assisted review
A model recommendation is bound to the policy snapshot it was evaluated against. The human reviewer who ratified it is named in the record.
Vendor approval
A procurement workflow moves from spec to quote to review to approval, then closes with a chain seal — the sequence is verifiable end-to-end.
- Essay
Agentic AI governance and the limits of execution proof
Agentic AI governance ends up being about a boundary rather than a model: the point where an agent proposes an action and something decides whether it runs. A receipt can carry what happened at that boundary. It cannot tell you which agent was standing there — and that limit is worth stating plainly.
- Essay
Three regulators, three vocabularies, one unanswered question
Over the past few months, three independent constituencies — a European policy process, UK public opinion, and a Singapore legal working group — have reached for the same requirement in three different vocabularies. They agree on the need. None has yet said what form the answer should take.