softwerkfor regulated industriesOpen the factory →

The verification-gated software factory

A goal goes in.
Provable software comes out.

In healthcare, life science, and fintech you can't just ship — you have to prove how the software was built. Softwerk turns a plain-language goal into a spec, builds it with role-typed agents, and lands every build on a content-addressed certificate: an independent review, a compliance pass, an immutable record. No green certificate, no merge.

independent reviewimmutable audit trailcompliance-profiledfail-closed by default
fail-closed
the gate

No certificate, no merge. Missing, expired, or tampered — the ship is blocked by default.

independent
the review

A distinct model family reviews every build. No agent signs off on its own work.

write-once
the record

Each build is a sha256 certificate of the exact source tree, written once — audit-ready evidence.

Three industries. One gate. Your proof.

The same verification gate serves every regulated market — it just carries your controls. Here is the compliance pain in each, and how the factory answers it.

Healthcare

HIPAAHITRUST

A HIPAA audit never asks whether the app works. It asks you to prove no patient data ever leaked and every access was controlled — for every release.

Softwerk loads the HIPAA and HITRUST profiles and its healthcare scaffold template packs, and a dedicated PHI-guard service clears every diff before it can merge — patient- and clinician-facing software with a PHI-guard gate on every change.

Life science

GxProadmap21 CFR Part 11roadmap

Computer-system validation means evidencing, in writing, exactly how a system was built and that nothing was altered afterward — every release, kept forever.

Every Softwerk build is a content-addressed certificate: sha256 of the exact source tree, written once. That is ready-made validation evidence an audit can rely on today. A dedicated GxP / 21 CFR Part 11 validation profile is on the roadmap; the write-once certificate is audit-ready evidence now.

Fintech

SOC 2PCI-DSSroadmap

SOC 2 and PCI auditors want provable controls: independent review, least-privilege deploys, and an audit trail nobody can quietly rewrite.

Softwerk delivers those by construction — a reviewer that never self-signs, a fail-closed deploy gate, and an immutable, write-once audit trail. SOC 2 runs today as a dedicated module, with ISO 27001 covered by the shared security-control set.

Nine stations. One direction. No hand-offs.

Work moves down the line the way it would on a factory floor: each station has a single owner, a single job, and a single output the next station can trust.

PRD
Intake
Plan
Planner
Architect
Architect
Design
Designer / UX
Execute
Fleet
Verify
Verifier
Comply
Compliance
Merge
Merger
Deploy
Deployer
Intake

PRD

A plain-language goal becomes a structured spec and a prioritized task breakdown.

Planner

Plan

The spec is broken into phases and a dependency-ordered build plan, each step with clear acceptance criteria.

Architect

Architect

Requirements resolve to a stack, a project type, a scaffold, and the infrastructure.

Designer / UX

Design

A design system and the UI are drawn to best practice, then checked against renders.

Fleet

Execute

Each task is built by its own executor, with many running in parallel.

Verifiergate

Verify

An independent model reviews the diff and the running app. It never self-verifies.

Compliancegate

Comply

Your compliance profile runs on the output alongside the PHI guard.

Merger

Merge

Default-deny: a task lands only when a green certificate is present and valid.

Deployer

Deploy

The build ships through the pipeline its project type defines. No hand-offs.

Nothing ships without a green certificate.

The gate is the whole point. A build lands only on a certificate that is content-addressed to the exact source tree and written once. It records an independent model review and a full compliance pass. If that certificate is missing, expired, or tampered with, the merge is refused. Fail-closed — the safe default is stop.

  • Independent-model review — never a self-sign-off.
  • A configurable compliance profile — HIPAA, HITRUST, and SOC 2 run as dedicated modules; ISO 27001 via the shared security-control set.
  • A dedicated PHI-guard service clears the diff before it can merge.
  • sha256(tree), write-once — a certificate cannot be back-dated or forged.
THE VERIFICATION GATE
verdict pass
certificatesha256(tree)
storagewrite-once (WORM)
reviewerdistinct model family
complianceyour profile · pass
phi-guardclear
missing / expired / tampered → merge refused

Start with your industry.

Pick the market you build for and the factory loads the right compliance profile before you write a single line of spec.

  1. 1

    Pick your industry

    Healthcare loads the HIPAA and HITRUST profiles with its scaffold template packs; fintech loads SOC 2 and ISO 27001. Life science selects the shared security controls plus the write-once certificate as validation evidence, with a GxP profile on the roadmap.

  2. 2

    State the goal

    Describe what you want in plain language. The intake agent turns it into a spec and a prioritized task breakdown.

  3. 3

    The factory builds it

    Role-typed agents plan, architect, design, and execute — many tasks running in parallel.

  4. 4

    Ship on a green certificate

    Independent review plus your compliance profile, written once. No certificate, no merge.

The compliance profiles: what runs today, what's next.

We only claim what the gate actually enforces. These frameworks run in the engine today; the rest are on the roadmap as the same profile mechanism generalizes to them.

HIPAAlive in the gate

Health data controls, with the PHI-guard service.

HITRUSTlive in the gate

The prescriptive control set healthcare buyers ask for.

SOC 2live in the gate

Trust-services controls for financial and B2B software.

ISO 27001live in the gate

Information-security management via the shared security-control set, cross-industry.

21 CFR Part 11 · GxPon the roadmap

Validation profiles for life science — the gate generalizes to your framework.

PCI-DSSon the roadmap

Cardholder-data controls for fintech — planned on the same profile engine.

Ten role-typed agents. A single permission spine.

The factory is not one model doing everything. It is a crew of specialists, each scoped to one job and one output — including a dedicated designer.

PRD / Intake
Turns a goal into a structured spec, then files it as a tracked, prioritized task breakdown.
Planner
Breaks the spec into phases and a dependency-ordered build plan with explicit acceptance criteria.
Architect
Chooses the stack, project type, scaffold, and infrastructure for the work.
Designer / UX
Designs the UI and design system to best practice, verified against renders and screenshots.
Executor
Builds one task at a time; the fleet runs many in parallel.
Verifier
Independent-model review plus the gate and visual QA. Never verifies its own work.
Compliance
Runs your compliance profile on the output and clears it through the PHI guard.
Merger
Default-deny gatekeeper: a task merges only on a green, valid certificate.
Deployer
Ships the certified build through the pipeline its project type defines.
Observer
Scores every run and files improvement tickets so the factory gets better.

A goal goes in. Provable software comes out.

Bring the goal and the compliance regime. The factory brings the spec, the build, the independent review, and the certificate.

Open the factory →