Designed to connect the systems you already run, read-only, preserving authority over every record. They stay authoritative.
A single question can involve the finance system, the payments processor and an operational database, held by different teams with different rules about who may look. Syndric is built to carry that question across them, without moving authority over anything.
Questions that span finance, operations and casework, answered from governed records, with the supporting records identifiable. Designed on controls that already hold, never promised in their place.
Conditions the organisation cares about, declared once, evaluated on schedule, producing findings that carry their evidence. Rule truth is deterministic; it is never a model's opinion.
A regular operational picture, assembled only from what each recipient is entitled to see. The foundation is built to carry it, and authority is settled first, every time.
Every record keeps its source, its history and its authority.
The connector contract has no write operation to invoke.
Source, time, sync run and programme, stamped at ingestion.
No record is readable without an explicit grant.
Built to carry answers that trace to entitled records.
“Across multiple departments, the same programme was being tracked in separate systems. Each team could see its own records. Nobody could see where the numbers stopped matching. Once the records were connected, the gaps became visible.”
Syndric is a governed layer above your systems, not another system of record. It does not merge their contents into one undifferentiated store.
How boundaries hold →Connections are read-only by construction: the connector contract has no write, update or delete operation to invoke.
Every record is stamped as it enters: source, record identity, time, sync run, and the programme it answers to. Lineage is never silently lost.
Access requires an explicit grant, enforced in the database itself, below the application. No grant means no access.
Control first, intelligence on top. These surfaces stand on controls that already hold.
Source, time, sync and programme travel with every record, and transformations extend lineage.
Enforced in the database, so an application defect alone cannot cross the programme boundary.
Each programme working from its own operational picture, and only its own. Designed, on controls that hold.
Connecting a system grants no person and no programme any right to see its data. Access requires an explicit grant, enforced in the database itself, and today every crossing between programmes is refused.
Every record resolves to its source, its sync run and the programme it answers to.
A missing, invalid or unavailable rule never widens access. Refusal is the resting state.
Each programme reads its own records, and only its own.
Syndric is developed against a written architecture, and every property below has been demonstrated mechanically, with the evidence recorded and kept.
The evidence behind each of these statements, and the precise boundary of each claim, is documented for review.
An authenticated identity has access to nothing until a grant says otherwise, and a missing or broken rule never widens access.
Isolation between programmes is a property of the database, not of application code, so an application defect alone cannot cross the programme boundary.
No model output can establish a permission, an authoritative figure or a legal determination. Deterministic systems decide, and the intelligence layer explains.
Most intelligence products decide what to show after they have read everything. Syndric resolves who may see what first, deterministically, below the layer that does the reasoning.
An earlier system, built and run for a private multi-branch operator. It predates the architecture described on this page and does not run it.
That system's record is evidence of execution, not of this platform's guarantees. Those are being established on their own evidence, and recorded.
The architecture fits wherever independent parts of one organisation, or several cooperating organisations, must act on shared questions without surrendering control of their own records. These are deployment patterns the architecture is designed for, not descriptions of existing installations.
Governed intelligence infrastructure. It is designed to connect, read-only, to the systems a complex organisation already runs, preserving where every record came from and which part of the organisation holds authority over it. Who may see what is enforced at the data layer, and the systems you run stay in place and stay authoritative.
No. Connecting a system grants no person and no programme any right to see its data. Access requires an explicit grant, the boundary is enforced in the database itself, and today every crossing between programmes is refused.
In place and demonstrated: read-only connections by construction, provenance stamped at ingestion, grant-based access enforced in the database, append-only audit, failure-safe ingestion and reproducible releases. Designed on top of that: cross-system answers, deterministic rules and scheduled operational intelligence. The distinction is stated plainly wherever it matters.
No. Syndric is a layer above the systems an organisation runs, not another system of record. Your systems remain the authoritative record, and nothing is merged into one undifferentiated store.
Connections are read-only by construction: the connector contract has no write, update or delete operation to invoke. Access to records requires an explicit grant, audit records cannot be edited by any application role, and deletion propagates through derived stores with the action itself audited.
No. By architectural rule, no model output can establish a permission, an authoritative figure or a legal determination. Deterministic systems decide, the intelligence layer explains, and judging remains a human's job.
Start with the questions your technical and governance teams will ask anyway. We built for those. Write to contact@syndric.io and bring your hardest ones.