One engine · every solution · every framework · every entity

Most governance platforms
ship a data model.
This one ships the engine.

Every other platform decided what a risk is, and what a control is, before you bought it. Amzaa has no solution inside the engine at all. Governance, risk, compliance, audit and third-party risk are configuration on one graph, so a domain we have never heard of does not need a new codebase. All of it sits on one sealed trail your regulator can verify without trusting us, and an AI rail you can switch off in front of them.

Become a design partner Pull the kill-switch
Nine → one
One engine, not nine tools. Governance, risk, compliance, audit, third-party risk and AI control on the same graph, sealed in the same trail, stopped by the same switch.
On save
A solution is a configuration. Press create and it is live. No release train, no consulting firm, no second codebase to maintain.
AI off
The floor still runs. Deterministic checks, no model, no prompt. It has no switch, because a floor with a switch is not a floor.
What is actually in the box

Not a thesis. A platform, with the parts an enterprise asks for by name.

Thirteen of them are below. See the full platform →

Most of this list is what a GRC programme buys as five separate products and stitches together badly. Here they are one engine, sharing one graph and one audit trail, so a change in any of them is visible in all of them.

And at any size, any structure
SME Mid-market Enterprise Listed & regulated Holding & operating PE firm & portfolio Government & federal
A new solution is not a project.
It is a configuration.
Zero code

The engine never changes. Only the rows do.

In a traditional platform a new solution is a development project: a schema change, a release, a migration, an integration bill. Here it is rows in a database. The engine never changes; the configuration does. That is why a second solution is not a second implementation.

And every solution you configure inherits the whole foundation: the graph, the sealed trail, the kill-switch, the accessibility enforcement. You do not rebuild governance for each one.

To be clear about the boundary: this makes the software fast. It does not make an implementation instant. What going live actually looks like →

See how a solution is built
Press create
Define
objects & fields
Connect
to the graph
Live
on save
No releasenothing to deploy
No codebasethe engine is untouched
No rebuildgovernance is inherited
Cost, and time to live

The licence was never the expensive part. And configuration being fast does not make an implementation instant.

Ask a CFO what the last governance programme cost and the software line is the small one. The money went into an implementation partner, a rebuild every time a new obligation arrived, five teams collecting the same evidence five times, and a separate project for every gap nobody planned for. Those are the lines this collapses, and it collapses them through how the platform is built rather than through a discount.

On time, we would rather you heard it from us: adding a field, a workflow or a whole solution is live when you save it and we will demonstrate that. What takes time in a rollout is almost never the software. It is agreeing your control framework and getting sign-off from people who have other jobs. No platform compresses that.

Where the money goes, and what going live looks like
How the saving happens
One enginenot one product per noun
One graphno reconciliation between tools
One testmany frameworks satisfied
One trailevidence is a by-product
Configurationa change is not a statement of work
Why people come to us

Two reasons. One is on your desk today. One is coming for everyone.

On your desk now
"My regulator is asking about AI, and I cannot prove we control it."
A model-risk framework lands and the board turns to you. Can the AI be switched off? Can you show nothing leaked? Can an examiner check it themselves? Right now the honest answer is a slide deck and a promise. Amzaa makes it a live demonstration, and a sealed record they can verify.
Coming for everyone
"We are putting AI agents across the business, and nothing governs them."
Within a year every function will run agents that read, decide and act. The question stops being whether you have AI and becomes whether you can govern it: stop it, prove it, show who approved what. Amzaa is the rail those agents run on, built before you needed it.
Read the full case for why now →
What it actually does for you

Every feature is here because it answers a question someone will ask you.

The CFO · the group
"Why nine systems and five consultants, across all our entities?"
One engine, many entities
Every solution and every entity on one engine and one graph, each isolated, rolled up into one view. A new solution is a configuration, not a project. Millions a year becomes a fraction of it.
Five auditors, five frameworks
"We test the same controls again and again for PCI, ISO, SOC 2, RBI..."
Test once, comply many
One control framework maps to every standard that asks for it. Test a control once and every framework referencing it moves together, on a score the engine computes live rather than a number anyone types. The scoring engine is running today; the clause-to-control mapping that makes it span PCI, HIPAA, ISO, SOC 2 and RBI at once is being populated framework by framework, and we will tell you exactly which are mapped. Collect once, comply many.
The auditor · the examiner
"Who changed this record, and how do I know your log wasn't edited?"
A sealed, verifiable trail
Every write records who, when, what and why, sealed in a hash chain where altering one row breaks verification for every row after it. Tamper with any row and verification fails. They check it themselves.
The board · the regulator
"Turn off the AI. Now prove nothing it did is still running."
One kill-switch
One action stops every agent at once, and fails closed if it cannot confirm. Count the AI's actions before and after. The answer is a number on a screen, not an assurance.
The board said no to AI
"We are not allowed to run the model. Does the platform still work?"
The deterministic floor
Your compliance checks run with no model at all: coverage gaps, broken lineage, stale evidence, found the same way every time. It runs on its own schedule with the AI switched off, and has no off switch of its own.
Procurement · legal
"Is it accessible? Section 508? Or is that another project?"
Accessibility in the foundation
Where your obligations require it, the standard is locked on from the backend and nobody inside the tenant can switch it off. The box is ticked before procurement asks the question.
AI governance

The AI is a rail you can detach. Underneath it, a floor that has no switch.

An agent proposes and a human approves; the engine does the writing, so nothing irreversible happens on a model's say-so. Pull the switch and every agent stops at once, leaving no trace, because the blocked calls never reached the gateway.

And with the AI off the deterministic floor keeps running. Coverage gaps, broken lineage and stale evidence, found the same way every time. That is the sentence most platforms cannot say.

Pull the kill-switch yourself See what the floor checks
Runs nightly · AI off
Proposethe agent never writes
Approvea person owns anything irreversible
Killthree levels, and it fails closed
Floordeterministic, and has no switch
Sealedevery finding, into the chain
The demo we open with

Tamper with a sealed record. Watch the chain break.

This is the moment that ends the meeting. Every write is hash-chained to the one before it. Change a value in a sealed row, and re-verifying no longer matches, from that row all the way down. Shown here as an illustration of the behaviour.

Findings · sealed audit trail company 4 · WORM · hash-chained
chain verified · 5 of 5 rows intact · chain intact from first row to last

In the product the trail is a Merkle-sealed, write-once table. Publishing the signed root to you is designed and scheduled, not yet shipped. See how the proof works →

Any industry, one engine

A bank and a hospital run the same platform, mapped to different obligations.

See all industries →
Why a competitor cannot just add this

These are not features bolted onto a governance tool. They are the foundation it stands on.

Configured, not coded

The engine has no solution in it

There is no GRC hard-coded anywhere. A platform that shipped a fixed data model cannot become configurable later without rewriting itself. That is a rebuild, not a roadmap item.

AI-off proof

Deterministic to the core

The floor never used a model, so switching the AI off does not degrade it. A platform built model-first cannot remove the model and keep working. That is a rebuild, not a setting.

Sealed by design

The chain is how writes happen

Tamper-evidence is not a log you switch on. Every write is derived and sealed by the database itself. There is no path to change a record that skips it.

Provisional patent applications covering time-travel, legal hold, a Merkle chain that breaks on a touch, test-once-comply-many and a kill-switch cluster were filed before the RBI's 2026 draft framework was published. Provisional means filed, not granted, and we will not describe them as anything else.

Design partner programme

Bring us the question your regulator is going to ask.

A small cohort across banking, fintech, insurance, healthcare, technology, private equity and the public sector. Early access, real influence, pricing that holds.

We are pre-launch and we will not dress it up. There are no logos on this page because there are none to show. Come and try to break the chain.