Automation where it is safe. Human judgment where it matters.
MIRAI does not ask companies to hand control to software on day one. Routine work is introduced gradually, important actions remain governed, and every decision can be reviewed afterwards.
The operating model, stated plainly.
Before anything is automated, we agree in writing which category each step belongs to. This table is part of the Blueprint, not a marketing summary.
Least access, clear boundaries, no surprises.
Access control
MIRAI connects with the narrowest permissions the workflow needs, under your identity provider and your own approval.
Separation of duties
The system that prepares a decision is never the one that approves it. Approvers are named people, not roles shared by a team.
Change control
Workflow changes are versioned and released deliberately. Nothing about how your work runs changes silently.
Data handling
Your systems remain the record. MIRAI holds the operational state it needs to run the workflow, and only for as long as agreed.
Confidentiality
Customer data is never used to improve a shared model or exposed to another client's workflows.
Deployment options
Hosted by MIRAI in Singapore, or in your own cloud tenancy where policy or regulation requires it.
We publish certifications when we hold them, and not before. Ask us directly for the current security documentation, sub-processor list and data-processing terms.
Every action attributable, months later.
Each case carries its own history: what the system did, what it prepared, who decided, when, and on what information. This is what makes automation defensible to an auditor, a regulator or a parent.
Implementation safeguards
Automate the routine. Escalate the exception. Keep accountability human.
If a workflow cannot be run this way, we will say so before you spend anything on it.
Bring your security questions to the first conversation.
We would rather answer them at the start than discover a constraint halfway through.