Approve the source
A source enters scope only after explicit allowlisting and connector-policy binding.
NERVE 1.0 Final reads explicitly approved business sources in read-only mode, normalises events, learns process routes and timing patterns and presents evidence-backed signals to analysts and owners. Version 1.0 is deliberately not designed to write back automatically to source systems.
NERVE 1.0 Final reads explicitly approved business sources in read-only mode, normalises events, learns process routes and timing patterns and presents evidence-backed signals to analysts and owners. Version 1.0 is deliberately not designed to write back automatically to source systems.
Events are spread across files and systems. Abnormal timings or routes are noticed late, and a signal without evidence is difficult to trust. NERVE makes approved events locally analysable without adding write capability to the source.
A source enters scope only after explicit allowlisting and connector-policy binding.
CSV, XLSX or controlled folder connectors read approved input without a write path back to the source system.
Raw input is converted into consistent business events with source and timing context.
Entities, transitions, routes, support and timing baselines are built from local evidence.
A detector produces a signal with confidence; Evidence Chain 2.0 links signal, evidence, process model, policy and conclusion.
NERVE supports investigation and decision-making; ACT is off in 1.0 and source-system write privileges are zero.
Visualise observed entities, relationships and process transitions from normalised events.
Learn routes, timing baselines, support and anomalies from repeatedly observed evidence.
Signal → Evidence → Process Model → Policy → Conclusion as an explicit explanation of the current conclusion.
RBAC self-test, database health, ingestion kill switch, security report, backup and Trust Pack export.
SQLite backup is staged locally, verified and returned with integrity evidence.
Hash-linked audit and an exportable Trust Pack make status, policy and evidence inspectable.
Investigates routes, timing, signals and evidence without source-system write capability.
Reviews audit chain, evidence, policy and Trust Pack without operating the runtime.
Manages Windows identity/RBAC, approved sources, connectors, backup and deployment.
Reviews read-only boundary, audit integrity, source policy, database health and external gates.
Process Learning compares observed transitions and timing with prior evidence; the reviewer can trace the signal back to concrete events.
NERVE shows the observed route, support/reliability where available and the event context behind the deviation.
Evidence Chain 2.0 and the audit chain provide a bounded, inspectable explanation without presenting the signal as black-box truth.
NERVE is built for organisations that have a great deal of operational data but cannot automatically see how work really moves through their systems. A formal process model describes how a process is intended to work; event data shows what actually happened. NERVE makes that second reality visible in a controlled way. It reads only explicitly approved sources, normalises relevant occurrences into a common event layer and uses that layer to examine process routes, timing and deviations. The aim is not to generate as many alerts as possible, but to trace each signal back to concrete evidence so an accountable person can judge whether something genuinely requires attention.
The 1.0 product line deliberately separates understanding from execution. Approved connectors ingest or read data without creating a general write path back into source systems. That reduces the blast radius of the intelligence layer and makes the trust model easier to reason about: NERVE can learn from a workflow without silently changing the workflow it observes. The organisation remains responsible for the operational decision, while the software provides structured evidence, timing context and process knowledge. If a later deployment ever introduces action capabilities, those capabilities must be treated as a separate authority plane rather than an incidental extension of analytics.
Normalisation allows data from different approved sources to become comparable. A useful event needs enough structure to answer what happened, when it happened, which object or process it concerned and where the evidence came from. Once events share that language, NERVE can reconstruct recurring paths and timing patterns rather than relying only on hand-written process maps. Process Learning is therefore descriptive before it is predictive: the software first establishes a measurable baseline of observed behaviour, then identifies cases that depart from that baseline. A slow case, an unusual route or a missing expected transition becomes meaningful because it is compared with previously observed process evidence.
A signal without evidence quickly becomes another opaque score. NERVE is designed so a user can move from the signal back toward the events and source context that produced it. This is especially important when operational data is incomplete or ambiguous. The software should be able to say that a pattern is unusual without pretending to know the business reason automatically. That distinction supports investigation: an analyst can confirm a real bottleneck, identify a data-quality issue or conclude that an apparent deviation is actually legitimate. Audit, source control and evidence export make that reasoning inspectable rather than ephemeral.
NERVE 1.0 Final is a Windows x64/.NET 10/WPF desktop product with local SQLite evidence storage. The runtime path is approved read-only sources/connectors → hardened ingestion → normalised business events → local evidence store → Business Graph/Process Learning → evidence-backed signals. A separate security plane governs Windows identity, RBAC, source policy, connector policy, ingestion kill switch and hash-linked audit.
The current connector family includes CSV, XLSX and Folder. Sources are explicitly approved and connectors are bound to a source and path. NERVE 1.0 has no central SSO/OIDC and no configured external AI provider. Future integrations must be designed and qualified separately.
Per-machine installation under Program Files; runtime operates without elevation after installation.
Windows groups can be bound to NERVE roles; managed endpoints and full-disk encryption are recommended for enterprise deployment.
Evidence, logs and configuration remain local in the Windows environment unless the customer deliberately chooses another controlled setup.
The local 1.0 Final product baseline is internally complete. Broad external enterprise rollout remains subject to production-specific gates such as commercial code signing, independent penetration testing and privacy/retention review.
A technical presentation can show Process Learning, Evidence Chain 2.0, read-only boundaries, Windows RBAC, backup/audit and deployment gates without opening a public interactive demo.