Platform
Platform Overview Observe Mode Enforce Mode Orchestrate Mode
Company
Partners Contact
Resources
White Papers & Docs Blog ROI Calculator
Try Live Demo Book a Session →
Try Live Demo Book a Strategic AI Session →
Trust & Security

Security is Not a Feature.
It is the Foundation.

Songlines Control® provides configurable governance and evidence controls for enterprise and government environments, subject to the customer's architecture, security assessment and operating model.

Configurable Governance Controls

Songlines Control® provides configurable control patterns that can be enabled and scoped according to workload risk, deployment boundaries and the customer's governance operating model.

Sovereign Mode
Apply approved endpoint rules to AI requests routed through the configured control path
HITL Approval Workflows
Require human approval for high-risk AI operations before execution proceeds
PII Auto-Redaction
Apply configured PII detection and redaction rules on covered outbound requests
Prompt Injection Prevention
Flag, redact or block recognised prompt-integrity patterns under configured policy

Core Security Architecture

Sovereign Infrastructure

Australian deployment and customer-hosted patterns can support residency requirements. Effective boundaries depend on the selected deployment, connected providers, data flows and customer configuration.

Zero-Trust Architecture

Requests routed through configured enforcement paths can be authenticated, authorised and evaluated against applicable policy. Customers remain responsible for route coverage and complementary identity controls.

Tamper-Evident Governance Records

Configured governance records can be signed and maintained as append-only entries. Evidence coverage and retention depend on source completeness, deployment settings and privileged administration.

PII Auto-Redaction

Configured detection and redaction rules can process selected sensitive-data types on covered enforcement paths. Customers remain responsible for classification, coverage, exceptions and validation.

Role-Based Access Control

Granular RBAC with per-user AI spend attribution. Admins, users, and service accounts each have precisely scoped permissions — nothing more.

Flexible Deployment

Choose a managed, customer-hosted or isolated deployment pattern after validating environment dependencies, residency boundaries and support responsibilities.

Tamper-Evident Audit and Compliance Records

Covered interactions can generate tamper-evident records using the fields received from connected workloads and policy decisions. These records support customer review when combined with appropriate retention, legal, risk and operating controls.

Songlines Control Audit and Compliance screen showing governance records for connected interactions and policy events

Compliance & Regulatory Alignment

Songlines Control® is designed to support compliance across the frameworks that matter most to Australian enterprise and government organisations.

Vulnerability Disclosure

We welcome responsible disclosure from the security community. If you believe you have discovered a security vulnerability in our platform, please contact our security team at security@cetusai.com.au. We will acknowledge receipt and coordinate triage and remediation communication according to severity and available evidence.