About

Operations background.
AI-native builder.

SONATE was built by someone who spent twenty years on the receiving end of audit requirements, compliance reviews, and operational risk — and understood that AI was about to create a gap no existing tooling could fill.

The Operator

Stephen Aitken spent two decades in regulated fintech operations — managing teams, navigating audits, building processes that had to survive regulatory scrutiny.

That background shaped a specific instinct: if something consequential happens, you need a verifiable record. Not a log. Not a screenshot. Evidence.

When AI started making real decisions in production systems — approving loans, drafting clinical notes, generating legal analysis — the absence of execution evidence became obvious to anyone who'd ever sat across from a regulator.

The Insight

We have TLS for networks. Code signing for software. Digital signatures for financial transactions. But AI had nothing — no standard way to prove what a model received, what it returned, or whether it complied with policy.

Non-repudiation is a solved problem everywhere except AI execution.

SONATE exists to close that gap: cryptographically signed, hash-chained Trust Receipts that anyone can verify independently, without trusting the platform that generated them.

Built solo. Powered by AI.

SONATE was built entirely through AI-assisted development — a solo founder with no traditional engineering background, using LLMs as the development team.

The result: 200,000+ lines of production code across a 20-package TypeScript monorepo, Python SDKs, a 30-page enterprise dashboard, and live cryptographic infrastructure — shipped in under twelve months.

This isn't a limitation. It's proof of the thesis.

If one person can build production infrastructure this complex using AI, imagine what autonomous AI systems are doing inside enterprises right now — without any verifiable record.

20
Core packages
28+
Backend services
30+
Dashboard pages
3
SDKs (TypeScript, Python, Browser)

Where we are

The platform is built. The cryptographic infrastructure is live. Trust Receipts are being generated and verified. The open-source SDKs are published.

What comes next is customers — and the team to support them properly.

We're raising pre-seed capital to fund the first enterprise design partners, hire engineering and go-to-market, and move from working product to operating company.

Melbourne, Australia · Founded 2025

What's live today

Ed25519 cryptographic signing + SHA-256 hash chains
W3C DID identity for agents and platform
MIT-licensed verification SDKs (TS, Python, browser)
6-constraint governance policy engine
Behavioral drift detection + emergence scoring
Autonomous Overseer agent with Trust Kernel
Multi-model gateway (OpenAI, Anthropic, Gemini)
Enterprise dashboard with 30+ pages
Real-time compliance reporting and alerting
Interactive demos and browser receipt verifier

Interested in what we're building?

Whether you're an investor, a potential design partner, or just curious about AI governance infrastructure — let's talk.