Skip to content
Forticia
Research
Quantitative FinanceEquities, FX, futures. Factors and backtests, every run replayable.Computational BiologySequence, folding, simulation. Versioned, reproducible labs.Cultural IntelligencePhilosophy, governance, ethics. How institutions decide and answer for it.AI InstrumentationPrivate models. Multi-agent orchestration. Guardrails on write.View all research
Quantitative Finance
  • Equities, FX, futures
  • Factors and backtests
  • Every run logged and replayable
InfrastructurePapersPolarisLink™About
Sign inRequest access
Request access

Research

Quantitative FinanceEquities, FX, futures. Factors and backtests, every run replayable.Computational BiologySequence, folding, simulation. Versioned, reproducible labs.Cultural IntelligencePhilosophy, governance, ethics. How institutions decide and answer for it.AI InstrumentationPrivate models. Multi-agent orchestration. Guardrails on write.

Platform

InfrastructurePapersPolarisLink™About
Request accessSign in
Forticia

A private institute for computational research. It publishes original research and runs a governed environment where every run is logged and replayable.

Sign inSystem status

Research

Quantitative FinanceComputational BiologyCultural IntelligenceAI Instrumentation

Platform

InfrastructurePapersPolarisLink™StatusSign in

Institute

AboutRequest accessContactGitHubPolarisLink repository

Forticia publishes research and simulations. Nothing on this site is investment advice.

© 2026 ForticiaPrivacyTerms
InfrastructureHelper Plane

Applications never
touch raw disk.

Import, export, and data access are contracts between workspace apps and storage. An app asks for a named contract. The plane evaluates it, performs the scoped operation, and records it.

helper-plane / request sequenceIn flight
Workspace appAppHelper PlanePlanePolicyPolicyStorageStoreAudit logAudit
  1. request importPOST /contracts/drive.import
  2. evaluateapp, role, workspace, target
  3. allowrule: drive.import
  4. scoped writedrive/imports
  5. stored
  6. append eventworkspace_events
  7. 202 queued

Importer queues a reading list into the workspace drive.

Infrastructure
  • Research Workspaces
  • Helper Plane
  • Governed AI
  • PolarisLink™

Policy evaluator

Ask the plane what it would do.

Choose an application, an operation, a path and a role. The scope matrix shows what each application holds. The evaluator reads the contracts and returns a decision you can inspect.

Applicationreadimportexportdraftwritedeclare
Notebookperson
Importerjob
AI agentagent

Allowed

Importer asks to import drive/imports.

Matched drive.import. The request stays inside the scope the contract names.

1{2  "decision": "allow",3  "status": 202,4  "contract": "drive.import",5  "rule": "drive.import",6  "reason": null7}

Audit tape

  • 22:14:18helper-planecontract · read granted, archive/records
  • 22:14:18notebooktask · completed “Re-run calibration”
  • 22:14:18research-leadprompt · approved “Tighten citation rule”
  • 22:14:18research-agentdraft · created beside “Literature summary”
  • 22:14:18importerimport · queued “Reading list”

Flows

Four paths through the plane.

Every way data enters, leaves, or is read goes through one of these contracts, and leaves a record shaped like the one beside it.

  • Import

    contract · drive.import

    A member or a job queues an item into the workspace drive. The plane checks the contract, stores it under the workspace, and records who asked.

    1{2  "source": "Manual",3  "item": "Reading list",4  "status": "Queued",5  "note": ""6}
  • Export

    contract · drive.export

    Finished work leaves through a named handoff. Any assigned member can create one, and the handoff target is a control that managers set on the workspace.

    1{2  "target": "Partner review pack",3  "status": "Available",4  "note": ""5}
  • File upload

    contract · drive.import

    Uploads are stored under a generated name. The original name, type, size and uploader stay as metadata on the record.

    1{2  "name": "calibration.csv",3  "mime_type": "text/csv",4  "byte_length": 18240,5  "owner": "A. Researcher"6}
  • Read

    contract · records.read

    Applications read the indexed records a contract names. They get no path to the disk underneath and no view of other workspaces.

    1{2  "workspace": "biology",3  "op": "read",4  "target": "archive/records",5  "decision": "allow",6  "status": 2007}

The record

What was accepted, and by whom.

Each accepted request becomes an event the workspace can read back: the actor, the action, a detail line and the time. Members see it arrive on the workspace stream.

workspace / eventsStreaming
  • 22:14:18notebookmessage · posted in #method-notes
  • 22:14:18helper-planecontract · read granted, archive/records
  • 22:14:18notebooktask · completed “Re-run calibration”
  • 22:14:18research-leadprompt · approved “Tighten citation rule”
  • 22:14:18research-agentdraft · created beside “Literature summary”
  • 22:14:18importerimport · queued “Reading list”

How it behaves

Questions a reviewer asks.

What happens when no contract names a request?
It is refused. The plane answers with a 403 and the storage layer is never touched. Because nothing was accepted, no event is written for the workspace.
Does the plane replace permissions?
No. The kernel checks the session, the workspace assignment and the role first. The plane then decides which named operations an application may perform inside that workspace. Both must agree.
Who can declare a contract?
Workspace managers and platform administrators. Contracts and data sources are recorded with a name, a state such as Required or Ready, and a plain-language detail, so a reviewer can read what an application is allowed to do.
Can an application reach another workspace?
Every request carries its workspace, and only members assigned to that workspace can address it. A contract in one workspace says nothing about another.
Is every accepted request recorded?
Yes. An accepted action writes an event with the actor, the action, a detail line and the time, and publishes it to the workspace stream. Refusals leave no workspace event.
Where do the JSON shapes above come from?
The record fields (name, state, detail, actor, action, created_at, import and export status) are the ones the platform stores today. The contract fields beyond name, state and detail show how an evaluation reads a contract.

Latest papers

Infrastructure

All papers

First papers are in preparation.

Each piece states what it claims and what it does not. See what the institute has published so far in Papers.

  • Research WorkspacesThe isolated rooms that contracts attach to.
  • Governed AIWhy an agent can draft but cannot write.
  • PolarisLink™Scoped keys and audit discipline as an open protocol.

See the plane from the inside.

Access is invite-only. Tell us what you are working on and an administrator will review it.

Request accessInfrastructure overview