AFIR™ · Attestation-as-a-Sidecar

Want to SideCar your key?

You already run your own model on your own stack. AFiR didn't route it, and that's fine. Hand us the input and output and we seal and dual-sign it with ML-DSA-65 (NIST FIPS 204) + Ed25519, then hand back a receipt anyone can verify. Zero routing. Zero model change. The output becomes signed inference.

How the sidecar works

Three calls. Your output is now verifiable.

No rebuild, no migration. The sidecar sits beside whatever you already ship and signs the inference after the fact.

01

Run inference your way

OpenAI, Anthropic, a local model, anything. AFiR never touches your routing or your weights.

02

POST the input & output

Send {input, output} to the sidecar. We seal it and dual-sign in tens of milliseconds.

03

Keep the receipt

A merkle root, an ML-DSA-65 + Ed25519 signature, and a verify URL. Verify offline or by link.

Live · keyless · running on production

Sign an output right now.

This demo signs with Hive’s key so you can try it with no signup. Bringing your own key, the actual SideCar, is the paid feature below.

Your inference POST /v1/afir/sign-demo
Signs on production. Keyless demo, rate-limited.
Signed receipt idle
// Run the demo to see a live ML-DSA-65 + Ed25519 receipt.
The gap

Make recorded assertions tamper-evident.

A SideCar receipt signs the input and output supplied by your integration. A valid signature from a trusted issuer makes that statement tamper-evident; it does not prove which model executed. Signing is off-chain, and the USDC payment record on Base is separate. Any anchor requires a receipt-to-root proof, a root-to-transaction binding, successful block inclusion and a stated finality policy.

ML-DSA-65 · NIST FIPS 204 Ed25519 · classical co-sign Tens of ms · seal & sign Payment · USDC on Base Signing and anchor evidence Patent Pending
SideCar your key

Start free on the Hive key. SideCar your own when you mean it.

The demo above uses Hive’s key. Signing under your key, so the receipt proves you signed it, is the SideCar.

Free trial

Hive-key signing

Email only. 25 runs, 7-day window. No card.
  • Sign real outputs with Hive’s ML-DSA-65 + Ed25519 key
  • Verifiable receipts with a shareable verify URL
  • Near-zero friction: mint a key with your email
  • Perfect for proving the flow end to end
Mint a free key →
SideCar · bring your own key

BYOK signing

Metered premium. Sign under your own keypair.
  • Receipts signed by your key: verify resolves to your public key
  • You control the provenance, not us
  • Same seal-and-sign path, your identity on the proof
  • Metered usage, billed on what you sign
SideCar your key →