Network segmentation
The edge node sits in a Purdue Level-2/3 DMZ. Outbound-only to the control plane, no inbound sessions, no lateral reach into the plant network.
Steelira is an OT system with an AI inside, not an AI product with an OT bolt-on. Segmentation, clamps, watchdogs, deterministic fallback and immutable audit are architecture, not features.
Reviewed by OT, quality and security teams at design-partner sites
Six controls, all enforced in the runtime rather than in policy documents.
The edge node sits in a Purdue Level-2/3 DMZ. Outbound-only to the control plane, no inbound sessions, no lateral reach into the plant network.
Every setpoint request is signed by the emitting agent and clamped per setpoint, per grade and per line before it reaches your Level-2.
A hard cap on write frequency prevents any failure mode — including ours — from oscillating a mill.
A 250 ms watchdog releases control deterministically to your existing Level-2 setup. The mill never stops because Steelira did.
Any change above your configured magnitude requires named human approval, recorded against the coil.
Append-only, hash-chained decision log per coil, exportable and independently verifiable.
Recipes and property windows are the most valuable IP in a steel plant. We treat them that way.
Every producer's data lives in a dedicated logical tenant with its own encryption keys, its own vector store namespace and its own model artefacts. There is no shared training pool and no cross-tenant retrieval path.
pass 6/7autonomy: assisted-writetwin delta 0.004 mmaudit id 7f31c
You choose the region and the retention period. Coil records, images and audit logs can be pinned to EU, US, India or Türkiye, or kept entirely on-prem for sensitive grades such as electrical steels and defence plate.
SSO/SAML and SCIM provisioning with role separation between operator, rolling engineer, quality, security and admin. Approval rights and envelope-editing rights are separate roles by default.
pass 6/7autonomy: assisted-writetwin delta 0.004 mmaudit id 7f31c
Status as of this release. We publish honestly, including what is still in progress.
| Framework | Status | Evidence available |
|---|---|---|
| SOC 2 Type II | [ASPIRATIONAL] In progress — Type I complete | Report under NDA |
| ISO 27001 | [ASPIRATIONAL] Implementation underway | Control matrix |
| IEC 62443 | Architecture aligned to SL-2 for the edge zone | Architecture review pack |
| GDPR | Compliant; DPA available | DPA, sub-processor list |
| Penetration testing | Annual third-party test | Executive summary under NDA |
| Vulnerability management | Continuous scanning, 30-day critical SLA | Policy and metrics |
[UNKNOWN] Certificate numbers and audit dates are withheld here and provided directly to prospective customers under NDA.
Four failure modes, four deterministic answers.
Confidence drops below threshold; the agent falls back from auto to assist and raises an alert. No silent degradation.
Fusion continues on remaining signals with a widened uncertainty band; loops requiring the lost signal revert to Level-2.
Watchdog timeout at 250 ms releases control to your existing setup. The line keeps running as it did before Steelira.
The edge continues to perceive, decide and act locally, buffering telemetry. Nothing in the control path depends on the cloud.
Model risk management, applied to a mill.
Model weights, prompts, envelopes and objective functions are version-controlled. Changes run against a golden dataset of your labelled coils and must clear accuracy and safety thresholds before they can be promoted to any line.
Uncited claims in generated explanations are blocked, not softened.
Schema and safety validation on every agent output before it reaches arbitration.
Configurable per loop and per autonomy level, with named attribution.
Golden datasets plus LLM-as-judge scoring on reasoning quality, sampled and human-reviewed by our metallurgists and yours.
Security is an engineering practice before it is a certificate.
Mandatory review, dependency scanning, signed builds and reproducible edge images. No direct-to-production changes, ever.
Production access is time-bound, approved and recorded. No standing credentials for customer environments.
Documented severity model, 24-hour customer notification commitment for confirmed incidents affecting your data or control path.
Every sub-processor reviewed and published. Customers are notified before any sub-processor change.
Control-plane recovery objectives tested quarterly; edge autonomy means a control-plane outage does not stop a mill.
security@steelira.com with a published policy and a commitment to acknowledge within one business day.
“We ran Steelira in shadow for eight weeks on the tandem mill. It called eleven of the twelve off-gauge tail events before our AGC reacted. That was the moment the argument ended.”
“Our best roller retires in two years. Steelira is the first system that captured how he sets up a hard automotive grade — and then explained why, with the coil history to back it.”
“Prime yield moved 1.7 points on the galvanizing line and reheat gas fell double digits. Nothing else we bought this decade did both.”
The architecture is designed so that it cannot. Writes are clamped and rate-limited, a 250 ms watchdog releases control to your existing Level-2 on any fault, and the edge node has no inbound network path. The worst realistic failure is that Steelira stops helping.
We train models for your tenant on your data. We never train another producer's models on it, and that is a contractual commitment, not a policy statement.
Yes. Fully on-prem and air-gapped deployments are supported, with model updates delivered by signed media transfer.
Only the roles you designate — typically a rolling lead, a quality lead and an OT lead jointly. Promotions are recorded immutably with all signatures.
Architecture diagrams, OT segmentation detail, control matrix, penetration-test summary and DPA — sent under NDA within one business day.