🛡️
Dual-LLM separation
Quarantined Gemini Flash for untrusted ingest; Claude Opus for privileged actions. Zod strict parser between them. Free-text never crosses the boundary.
⚖️
Statutory drafts
Cease & desist, DMCA notice, UDRP complaint, TTAB opposition — formatted to the relevant statute or rule, with citations, evidence references, and a counsel-review-ready signature block.
🔍
Five-registry coverage
USPTO TESS daily, EUIPO eSearch Plus daily, WIPO Madrid weekly, ICANN CZDS zones for .com/.net/.org/.io/.ai daily, X handles hourly. Per-source circuit breakers with documented fallbacks.
📜
Audit chain that holds up
Append-only audit log with structured fields, hash-chained writes, tombstone attestation. Every tool call, every gate decision, every redaction logged. Exportable for client review and bar inquiry.
🔐
Built for the lethal trifecta
SSRF egress proxy with allowlist, IP-block, DNS-rebinding defense, and disabled HTTP redirects. Per-tenant column-level encryption via AWS KMS. Server-side RBAC re-read from live DB inside every serializable write transaction.
🤝
Multi-model verification
High-stakes actions require quorum from Anthropic, OpenAI, and Google. Disagreement escalates to a human. PII redacted before any third-party LLM call. DPAs required for autonomous mode.