SYSTEM ARCHITECTURE

Policy lives at the enforcement boundary.

ReDLP separates content inspection, policy distribution, and security visibility into explicit paths—with the endpoint as the control point.

CONTENT PATH

The decision happens before the request leaves the device.

A supported adapter captures send intent, the ReDLP Native Broker hands it to the ReDLP Service, and the local policy engine determines the outcome.

01AI web applicationUser intent
02ReDLP Browser ExtensionApplication adapter
03ReDLP Native BrokerBound local IPC
04ReDLP ServiceLocal policy authority
05Allow · Warn · Block · Redact · ReplaceMutually exclusive result
SENSITIVE CONTENT REMAINS INSIDE THE ENDPOINT TRUST BOUNDARY
POLICY PATH

Signed policy moves down.

  1. Administrator publishes tenant policy
  2. Control plane compiles and signs an immutable publication
  3. Endpoint verifies tenant, signer, sequence, and trusted time
  4. Last-known-good policy activates atomically
METADATA PATH

Content-free evidence moves up.

  1. Endpoint creates a closed-schema event
  2. Device authenticates and signs the request
  3. Control plane enforces tenant and route boundaries
  4. Portal presents operational metadata only
TRUST MODEL

Every boundary has a specific job.

ENDPOINT

Content authority

Inspects, decides, transforms, queues metadata, and preserves last-known-good policy.

CONTROL PLANE

Policy authority

Authenticates tenants and devices, signs publications, and stores closed-schema metadata.

ADMIN PORTAL

Administrative authority

Publishes policy, manages device lifecycle, and exposes content-free security evidence.

ARCHITECTURE REVIEW

Trace your AI data path with us.

Bring your browsers, identity model, device estate, AI applications, and enforcement requirements.