Thesmios

Compliance copilot

A copilot grounded in the compliance graph.

The copilot is now a stable API surface that answers from passport evidence, trust controls and integration state. It cites product evidence and keeps adverse decisions human-owned.

GA means answerable, cited and auditable.

The endpoint returns a grounded answer, confidence, evidence links, next actions and guardrails. It does not replace human review or give legal advice.

POST /api/copilot/compliance

Sample answer

Start with the action queue. The demo passport has 1 action item, 17 items needing review, and 261 verified credentials. Open the expired or low-confidence item first, then use wallet export, verifier API, reviewer marketplace or E-Verify depending on the evidence type.

Resolve action-required credentials first.
Use selective disclosure when a recipient only needs proof, not a document.
Route specialist cases to the accredited reviewer marketplace.

What it can answer

Evidence questions

What is missing, stale, low-confidence or ready to export.

Workflow questions

How to handle E-Verify, DBS, sanctions, ISO and EUDI readiness without overclaiming.

Regulated buyer questions

What proof exists, what is external-auditor-only and what should be routed to a reviewer.