Laboratory workbench with analytical equipment
0Stages from evidence to production
How we work

Software Design & Systems Development, The Grocky Way

Most AI products start with a demo. Ours start with evidence. Every product runs through a governed program where each requirement traces back to a source and each major decision is recorded.

Evidence First

We research an industry into a graded evidence corpus before writing a line of code.

Framework First

Every product is built as a consumer of the shared Grocky Framework, never as a one-off.

Work process

How It Works

Six stages take a product from an idea to certified production. The first product in an industry is slower; every product after it is faster, because the platform keeps growing while the industry layer stays thin.

01.

Discover

Research the industry into an evidence corpus: sources graded by strength, claims linked to sources, open questions tracked as hypotheses.

02.

Model The Business

Map value streams, capabilities, processes, rules and events, and mark which work AI can augment and which must stay human.

03.

Specify

Write atomic, testable requirements traced to capabilities and evidence, each tagged platform-reusable or industry-specific.

04.

Architect

Record each design choice (service boundaries, data, AI, tenancy, deployment) as an architecture decision before code is written.

05.

Build As A Consumer

Build the industry product on top of the platform, milestone by milestone, with reusability guardrails gating every merge.

06.

Preview, Certify, Operate

Ship in preview, have domain experts validate the knowledge, promote to production, then monitor quality and cost continuously.

The Grocky Framework

Six Layers, One Direction Of Dependency

Platform layers know nothing about any industry. Industry layers build on the platform, and never the other way round. That one rule, checked automatically on every commit, is what lets a new product start half-built.

0Architectural layers
0%Requirements from the platform
0Guardrails enforced in CI
0Gateway for every model call
Industry Products[V] vertical
Grocky HealthcareGrocky FinancialGrocky EnvironmentalGrocky PropertyMSP Platform
Knowledge Packs & Connectors[V] vertical
Versioned, cited claim setsRegulatory rule packsTemplatesSystem connectorsLicensing gates
Capability Services[P] platform
Deliverable productionDocument intelligenceSpatial engineField captureCollaborationReporting
Intelligence Layer (AI OS)[P] platform
Model gatewayEvidence engineCitationsConfidenceProvenanceHuman reviewPrompt governanceAI qualityAI jobs
Platform Core[P] platform
Identity & RBACTenancyAuditDocument repositoryWorkflowSearchNotificationsBillingAPI gateway
Infrastructurefoundation
PostgreSQL per tenantpgvectorPostGISObject storagePrivate mesh networkGPU inference
[V] Vertical: swapped per industry Intelligence layer: the only path to AI models [P] Platform: shared by every product

Platform Core

Identity, role-based access, tenancy, an append-only audit trail, documents, workflow and billing: built once, tested once.

Intelligence Layer

The framework's AI operating system. Products submit AI tasks; this layer handles retrieval, generation, citations, confidence, cost and review.

Capability Services

Reusable engines for deliverables, documents, spatial analysis and field capture, with no industry vocabulary inside.

Knowledge Packs

An industry's expertise as data: versioned claims tied to source, jurisdiction and effective date. New industry, new packs, same code.

Connectors

A standard plugin contract (authorize, sync, map, report health) with licensing enforced where data enters.

Industry Products

Thin consumers of everything below: their own templates, roles, packs and screens, from their first commit.

Foundations

Built On Deep-Learning Infrastructure

Underneath the intelligence layer are the deep-learning models that make modern AI possible. Our job is to make them dependable: grounded, measured, auditable and replaceable.

Transformer Foundation Models

Frontier models from leading providers paired with open-weight models on our own GPU hardware, chosen per task by quality, cost and data sensitivity.

Embeddings & Semantic Retrieval

Neural embeddings turn regulations and documents into vectors. Retrieval runs on pgvector inside each tenant's database, behind a service built to swap engines without rewrites.

Document, Speech & Vision Models

OCR and vision read scanned contracts and forms. Speech models transcribe meetings. Their output feeds the same citation pipeline as text.

A Governed Model Gateway

One OpenAI-compatible gateway routes every request, with provider fallbacks, per-tenant budgets and metering.

One Contract For Every AI Task

No product talks to a model directly. Production results without citations, confidence and provenance are rejected by the framework. Human-gated tasks return a recommendation, with no "decision" field for software to fill.

# AI Task Envelope (in)
{
  "task_class":     "section_draft",
  "tenant":         "t_4821",
  "prompt_ref":     "deliverable/section@v3",
  "evidence_query": { "pack": "ceqa" },
  "grounding_mode": "production",
  "budget":         { "max_usd": 0.40 }
}
# AI Result Envelope (out)
{
  "output":        "…",
  "citations":     ["corpus://source/SRC-0042#CLM-0017"],
  "confidence":    0.86,
  "review_status": "pending_review",
  "cost":          0.07
}
Design

The Six-Step Grounding Pipeline

Every AI task in every product passes through the same six steps. Skipping one isn't a setting anyone can change.

01.

Retrieve

Only claims the task may use, filtered by jurisdiction, date and validation status.

02.

Assemble

A versioned, governed prompt built from the template and evidence.

03.

Generate

The gateway routes to the right model, or compares several, within budget.

04.

Bind

Citations, confidence and provenance attached; every citation must resolve.

05.

Check

Quality monitoring scores the result and flags gaps and drift.

06.

Route

Human-gated results go to a named reviewer; everything is audited and costed.

Validation-gated knowledge

Production Uses Only Expert-Reviewed Knowledge

Every claim in a knowledge pack carries a validation status. Production output may only be grounded in claims domain experts have reviewed or certified. Everything else runs in a clearly labelled preview mode, which is how a product can be demonstrated honestly before its knowledge is certified.

Draft→Evidence-Supported→Expert-Reviewed→Certified

Claims can also be Hypothesis, Disputed, Deprecated or Superseded. Conflicts between sources are preserved, not silently resolved.

Non-bypassable gates

The Software Never Signs

Where a deliverable moves through a lifecycle (draft, internal QA, certified, submitted, under review, accepted) the framework enforces the gates structurally:

  • Certified requires completeness, every citation resolving and no open QA items
  • Certification requires a named individual; the platform never certifies itself
  • Open reviewer comments block resubmission
Principles

What The Framework Guarantees

Evidence Over Assertion

If the AI can't cite it, the framework won't present it as fact.

AI Recommends, People Decide

Judgement and sign-off belong to named, accountable professionals.

Isolation By Design

Each customer's data in its own database; four-tier data classification enforced in code.

Reusable By Construction

CI fails the build if platform code references an industry or calls a model directly.

Model-Agnostic

One gateway and one contract, so better models drop in without touching products.

Cost-Aware

Every AI job budgeted, metered and attributed to a tenant.

Security foundations

Secure From The Platform Up

  • Database-per-tenant isolation on PostgreSQL
  • Append-only audit across every service
  • Secrets stored outside the reach of AI agents and their tools
  • Administrative access only over a private mesh network
  • Default-deny firewalls and automated intrusion blocking
  • SSO / MFA, backups and disaster recovery in the platform core
Engineering stack

Proven, Replaceable Technology

Technology choices are recorded as architecture decisions and treated as the most replaceable part of the system.

Python · FastAPITypeScript · Next.js · ReactPostgreSQLpgvectorPostGISS3-compatible storageContainersOpenAI-compatible gatewayPrivate GPU inferenceCI-enforced guardrails
Get started

See It Working On Your Problem

Tell us about your workflow and we'll set up a demo with the product that fits, or tell you honestly if we don't have it yet.

Request A Demo

Tailored to your workflow, with sample data.

Partners & Resellers

MSPs, advisors and distributors.

Meet The Team

An AI leadership team, accountable to people.