Skip to content
Kaldros
Design partners onboarding · 2026

The audit layer for AI agents.

Every action your agents take — captured, hash-chained, and mapped to the frameworks your auditors actually ask about. EU AI Act. DORA. ISO 42001. SOC 2.

Trusted by teams preparing for
EU AI Act·DORA·NIS2·ISO 42001·NIST AI RMF·SOC 2·HIPAA
The problem

Agents are running in production. Auditors are already asking.

Regulators want proof.

The EU AI Act, DORA, and Colorado's AI Act all require logs that can reconstruct any high-risk AI decision. Langfuse traces won't pass an audit.

Your agents already run in production.

Every MCP tool call, every LLM invocation, every autonomous action — and nobody knows what they did last Tuesday.

Your CISO can't sign off.

"Check CloudWatch" is not a compliance control. "We'll export from Langfuse" is not evidence.

How it works

Intercept. Record. Prove.

01
Intercept.

Drop in our SDK or point your MCP gateway at Kaldros. Every tool call, every model response flows through us.

02
Record.

Each event is canonicalized, hashed, and linked to the previous event's hash. Timestamps are signed every fifteen minutes. The log is append-only and tamper-evident.

03
Prove.

Export evidence packs for any framework in one click. Signed PDFs, machine-readable JSON, and a verifiable chain your auditor can re-check offline.

Integrations

Built for the way agents actually run.

Point any agent runtime at Kaldros — MCP gateway, language SDK, or raw HTTP — and start writing to the chain. No framework-lock-in, no vendor tax.

MCP
LangChain
LangGraph
OpenAI Agents
AWS Bedrock
Vertex AI
Anthropic
HTTP / SDK
Your data

Your data stays yours.

EU and US regions.

Pick a region per workspace. Data never leaves it. Cross-region is an explicit, audited action — not a quiet default.

BYOK with your KMS.

AWS KMS, GCP KMS, Azure Key Vault. We never hold the keys. Revoke us with one API call.

Independent posture.

SOC 2 Type 2 and ISO 27001 in progress. Memoranda and sub-processor list available on request under NDA.

Ready to give your auditors a better answer than "we'll get back to you"?