Relevance is not permission. Retrieval pulls what's relevant; it has no idea what the asker is cleared to see. In a prototype it hides. In production, on real records, it leaks.
Point your RAG pipeline or API client at Custosa. Nothing reaches the model unchecked.
Evaluates every field. Any AI provider.
Deterministic, role-aware policy. No model guessing; fail-closed.
PASS or REDACT per field. HIPAA, SOC 2, and SOC 1 at once.
Signed and hash-chained: provable offline. The record is dropped.
Putting AI into production on regulated data? Let's talk.