Encryption everywhere
TLS 1.3 in transit, AES-256 at rest, per-tenant keys with optional customer-managed keys.
Anodela is designed for the approval bar of IT, OT, quality and EHS in an industry where a single leaked coating recipe or an unlogged setpoint change is unacceptable.
Reviewed by the security teams of global cell makers [PLACEHOLDER]
TLS 1.3 in transit, AES-256 at rest, per-tenant keys with optional customer-managed keys.
SSO/SAML, OIDC, SCIM provisioning and RBAC scoped to plant, line and agent.
Per-tenant data stores, vector indexes and model scoping — no cross-tenant retrieval, ever.
Append-only records of every perception, proposal, approval, execution and rollback.
EU, US, Korea, Japan and China-domestic regions, plus on-prem and air-gapped modes.
Signed images, measured boot, mTLS between edge and control plane, and OTA with rollback.
Coating recipes, formation protocols and tolerance windows are the crown jewels of a cell maker. Anodela's architecture assumes they must never be pooled.
The full control path — perception, reasoning, control and audit — runs on your hardware. Updates arrive as signed bundles you inspect and approve.
Fleet improvements are shared as model updates and rare-failure priors under terms you approve — never as raw recipes, images or cell records.
The audit trail is designed to strengthen your IATF 16949 and IEC 62660 evidence: every autonomous action is traceable to the cell it affected.
Certification status is tracked transparently. Items marked in progress are not yet awarded.
| Programme | Status | Notes |
|---|---|---|
| SOC 2 Type II | In progress [ASPIRATIONAL] | Type I complete; Type II observation window under way |
| ISO 27001 | Planned [ASPIRATIONAL] | Targeted after SOC 2 Type II |
| GDPR | Aligned | DPA available; minimal personal data processed |
| IATF 16949 / ISO 9001 | Supports customer compliance | Anodela produces evidence; certification is the plant's |
| IEC 62660 / UN38.3 / UL | Supports customer compliance | Traceability and genealogy evidence for cell safety programmes |
| Penetration testing | Annual + on major release | Third-party; summary letter available under NDA |
Coating, weld, robot and AGV actions degrade to a safe stop on loss of confidence or connectivity.
No control envelope is armed until the twin validates it against as-built line behaviour.
Safety-relevant and high-impact decisions always require a named approver.
Every executed change is idempotent and reversible, with automatic rollback on adverse signal.
You receive the security pack, architecture diagrams, DPA and pen-test summary under NDA.
A joint session with your IT, OT and quality teams covering isolation, egress and audit.
Regional, on-prem or air-gapped mode selected and documented.
Controls mapped to your internal standard; approvals recorded before connectors go live.
“We were stranded at 63% first-pass yield for five months. Anodela ran in shadow for six weeks, then took bounded control of coat weight and drying. We crossed 91% in the next quarter.”
“It reads our CT and vision streams the way a great process engineer does — except it does it on every metre of web, on every shift, and it writes the correction back before the defect becomes scrap.”
“The audit trail was what got quality to yes. Every proposal, approval and executed setpoint is linked to cell genealogy, so our IATF evidence got stronger, not weaker.”
Standardize coating, weld and formation autonomy across every plant with central model governance and per-site envelopes.
Managed Jetson/IGX clusters with OTA updates, versioned rollbacks and 99.9% availability targets.
Named process-AI engineer, qualification support, PPAP-aligned documentation and 24/7 escalation.
Multi-year agreements with pricing tied to first-pass yield, scrap and formation cost.
Not without explicit, per-model-family opt-in. By default your data trains only your models, inside your tenant.
Very little — operator and engineer identity for approvals and audit. No biometric or productivity monitoring is performed.
Yes, customer-managed keys are supported for cloud deployments, and in on-prem mode key material never leaves your infrastructure.
Coordinated disclosure with a published contact, severity-based remediation targets, and signed OTA updates that can be staged and rolled back per line.
Most reviews complete in two weeks. We answer in your format, not ours.