Security
Authority, isolation, and a clear audit trail.
Operant is built so the server decides who may act, suggestions stay suggestions until a person approves, and every trusted change leaves a record you can explain later.
Controls
How authority is meant to work.
These are the product rules Operant enforces on the path from intent to trusted write.
Authority sits in the backend
Which tenant you belong to, who you are, what you may approve, and what state a record is in are decided by the server. A screen may express intent; it may not grant itself permission.
ReadyAvailableTrusted changes require a person
Price, order, financial commitment, and master data changes need a person with the authority to make them. Automated suggestions stay suggestions.
ReadyAvailableDecisions leave a trace
Who approved what, when, and on which version — recorded with the record, so a choice can still be explained months later.
ReadyAvailableSeparation between tenants
Every query is scoped to one company's data. Isolation is enforced on the server path, not left to the client.
ReadyAvailable
What this website does
- This site is a set of marketing pages. It stores nothing about you beyond what you choose to send, and sets no tracking cookie.
- There is no login form on the marketing site — product access is separate.
- Contact is hello@oper-ant.com. The download page also has an early-access form that emails the same team.
- No message broker, queue, or credential is reachable from the browser.
What we design for
- Authority and tenant scope are resolved on the server
- Trusted writes require an authorized person
- Approvals leave an audit trail with the record
- Pilot data handling is agreed in writing before connection
Questions
Asked about control.
Would software change a price or an order on its own?
No. Operant suggests and shows what is missing. Changing a price, an order, a financial commitment, or master data requires a person with the authority to do it.
Do you have SOC 2, ISO 27001, or similar?
Ask us during a pilot conversation for the current control set and review status. We share what is verified, with dates.
What happens to data during a pilot?
That is agreed in writing before a pilot starts: what data is involved, where it lives, who can see it, and how it is removed afterwards.