QuantumHealth Innovations
AI for diagnostics and medical research.
• The control layer for AI agents
Quantax sits between AI agents and your business systems. The Permission Firewall gives each agent short-lived access scoped to the step it's on. CommitLayer checks every high-risk action, from payments to deletions, against your rules, evidence and approvers before it's committed, and records every decision.
• Try it
An agent's change is held at CommitLayer. You decide whether it commits.
Propose
Agent: update supplier bank details for "Acme Supplies Ltd"
Evidence: Invoice INV-2041
Check
Policy: sensitive field "payment_details" → independent verification required · amount threshold · approver authority
Decide
Paused · awaiting approval by Finance Controller
Record
Audit logged: decision, evidence, system state, hash
Recover
Rollback available where the connected system permits
• The problem
Agents have left the chat window. They are moving into ERPs, databases, payment tools and SaaS apps, where a single write can delete records, move money or change a supplier.
Standing admin keys turn one mistake into many. An agent holding a broad, permanent key can cause mass deletions or an unauthorized transfer in seconds, before anyone notices.
Payment details are a known target. Supplier bank-detail changes are a well-known route for business email compromise fraud, and an agent reading a forged invoice can be fooled too.
Guardrails check words, not changes. Existing tools inspect prompts and outputs. None look at the access an agent holds or the actual change about to be committed to your systems.
• The Quantax platform
Two controls around every high-risk agent action: payments, deletions, transfers and record changes.
BEFORE THE ACTION
Instead of a fixed admin key, each agent gets short-lived, step-by-step permissions scoped to what it is doing right now. Access expires when the step ends.
Scoped, just-in-time permission
In development
AT COMMIT
Every high-risk change is checked against your rules and evidence, paused for a human where it matters, recorded, and recoverable.
Evidence · policy · human approval · audit · rollback
In development
• Speed and control
Agents keep coding invoices, matching receipts and drafting vendor updates at machine speed. CommitLayer only steps in when a change touches something your controls care about.
| Agent change | Rule | Outcome |
|---|---|---|
| Code invoice INV-2038 to 6100 | Within policy | Allowed |
| Update supplier contact email | Low-risk field | Allowed |
| Change payment_details | Sensitive field | Paused |
| Approve INV-2044 above threshold | Approver authority | Paused |
| Release payment run | Money movement | Human only |
• How it works
The agent submits the change it wants to make, with the evidence behind it.
CommitLayer tests the change against your policies, fields, thresholds and authority.
Allow · pause for a named approver · block.
Every decision lands in a tamper-evident audit trail.
Reversal or compensating steps when something needs undoing.
Policies are versioned, reviewed and reported on, like any other control.
• Architecture
01 · SOURCE
↓ requests a step
02 · ACCESS
↓ grant + change
03 · COMMIT
↓ commit
04 · SYSTEMS
• First workflow
We start where the risk is concrete and the controls are well understood: the vendor master and the invoice approval chain.
Next: any system where an agent's mistake is expensive.
| Action | CommitLayer requires |
|---|---|
| Prepare supplier-record update | Agent may propose |
| Change payment details | Independent verification |
| Approve invoice above threshold | Named approver |
| Release money | Human approval, always |
• Design principle
A rule we build to, not a metric we report. Four commitments follow from it.
CommitLayer never releases funds on an agent's say-so. Money moves only after a human approves it.
Details →Rules are written in finance terms: fields, thresholds, segregation of duties and approver authority.
Details →Every proposal, check and decision is recorded with its evidence, whether it was allowed, paused or blocked.
Details →The Permission Firewall gives each agent only the access its current step needs, and takes it back when the step ends.
Details →quantax.space launched; design-partner program opened
CommitLayer prototype: supplier and invoice change workflow (propose → check → decide → record → recover)
Research began on AI-agent safety: permissions, approvals and audit for agents acting in real business systems
Company incorporated (Delaware)
• Design partners
We work closely with a small number of finance teams to define policies, test the approval flow and agree what good looks like before anything touches production.
• The Quantax platform
Quantax is the control layer for AI agents. The Permission Firewall scopes each agent's access to the step it's on. CommitLayer decides, change by change, whether a write goes through, waits for a person, or stops, and keeps the record that proves it. Neither replaces your agents or your systems.
In development · private design-partner pilots
• Permission Firewall · before the action
Instead of a fixed admin key, each agent gets short-lived, step-by-step permissions scoped to what it is doing right now. Access expires when the step ends, so a confused or compromised agent can't reach beyond its current task.
Access is issued when a step starts, never held in advance.
Each grant covers only the records and actions the current step needs.
Access ends with the step. Nothing is left standing for the next mistake.
The narrowest access that gets the job done, by default.
Who asked, what was granted, for which step, and when it expired.
• CommitLayer · at commit
• The lifecycle
The agent sends the exact change it intends: the record, the field, the old and new value, and the evidence it relied on, such as an invoice or an email.
The policy engine evaluates the change against your rules: is the field sensitive, is the amount above threshold, who may approve it, and is the evidence sufficient and independent?
One of three outcomes: allow, pause for a named approver, or block. Approvers see the change, the evidence and the rule that triggered the pause in one view.
The proposal, checks, decision, approver and resulting system state are written to a tamper-evident log, each entry hashed and chained to the one before it.
Where the connected system permits, a committed change can be reversed; where it doesn't, CommitLayer records the compensating steps to take.
Policies are versioned and reviewed like any other control, with reports showing what agents proposed and how each change was handled.
• Policy types
| Policy | What it does |
|---|---|
| Sensitive fields | Flags changes to fields such as payment details, tax IDs or remittance addresses. |
| Amount thresholds | Routes anything above a set value to a person, by entity, currency or vendor. |
| Segregation of duties | Stops the same actor, human or agent, from proposing and approving one change. |
| Approver authority | Matches each pause to someone with the authority to approve it. |
| Evidence requirements | Requires supporting documents, and independent verification where the risk calls for it. |
• Outcomes
ALLOW
The change is committed straight away and logged. Routine work isn't slowed down.
PAUSE
The change is held until the right person approves or rejects it, with full context.
BLOCK
The change is refused, the agent is told why, and the attempt is recorded.
• Audit trail
Each record is hashed and chained, so a missing or altered entry is detectable. Exports are designed for auditors, not just engineers.
• Recovery
Because CommitLayer records the state before each change, it can offer a reversal where the connected system supports one.
Where reversal isn't possible, for example after a payment file has left the building, it lists the compensating steps and who owns them. We are explicit about which is which.
• Who it's for
Controllers and AP leads who want agent productivity without loosening controls.
Teams putting agents into real systems who need approvals and an audit trail from day one.
Builders who want their agents to pass a customer's security and finance review.
• FAQ
Keys are standing and broad; grants are per-step and expire. A Permission Firewall grant covers one step of one task, and is logged when it's issued and when it ends.
No. Finance operations is the first workflow. Quantax covers any high-risk agent action, such as payments, deletions, transfers and record changes.
No. CommitLayer never releases funds. Money movement always requires human approval in your own systems.
No. It adds an agent-aware checkpoint in front of them. Your existing approval workflows stay in place.
Integration details are shared privately with design partners.
Permission Firewall and CommitLayer are in development, with private design-partner pilots now. It is not yet publicly available.
Least-privilege access, encrypted in transit and at rest. See Security for details.
• Security & trust
A product that checks other software's changes has to hold itself to a higher bar. These are the practices we follow today, in plain words.
• Practices
Every integration and every team member gets the narrowest access the job needs. Write access is scoped per workflow.
IN PLACETraffic uses TLS. Stored data is encrypted at rest.
IN PLACEDecisions are hashed and chained, so a removed or edited entry can be detected.
BY DESIGNNo agent, and no CommitLayer rule, can release funds without a person approving it.
BY DESIGNWe collect only what a decision needs and mask sensitive values, such as bank details, wherever we can.
BY DESIGNAccess to systems and data is reviewed regularly and removed when no longer needed.
IN PLACEFound a vulnerability? Report it to us privately and give us reasonable time to fix it before disclosure. We won't pursue good-faith research.
• Compliance roadmap
"We are preparing for SOC 2. We'll publish status here when an audit is underway."
We don't display badges we haven't earned. Design partners can request our security overview and a DPA under NDA.
• About Quantax
Quantax is the control layer for AI agents: the Permission Firewall scopes what an agent can reach, and CommitLayer controls what it can commit. Finance operations is our first workflow, where a wrong change costs real money and the controls are well understood.
• Mission
To make it safe for companies to let AI agents act on their systems, with every consequential change checked, approved by the right person, recorded and reversible.
• Leadership
Founder & CEO
• Company facts
| Fact | Detail |
|---|---|
| Parent company | UnitedQuantumX Inc. |
| Entity | Delaware C-Corporation |
| Founded | 2025 |
| Funding | Bootstrapped |
| Focus | Applied AI safety for agents |
| Registered address | 254 Chapman Rd, Ste 208 #22419, Newark, Delaware 19702, United States |
• Parent company
UnitedQuantumX Inc. is a research-first holding company working across AI and quantum. Quantax is its applied-AI company and the first to ship a product.
Research stage
AI for diagnostics and medical research.
Quantum-safe security.
AI analytics and risk models.
Quantum computing and algorithms.
Decision intelligence.
AI for legal research and compliance.
Secure, resilient networking.
Computational biology and genomics AI.
Long-range research, including fusion energy.
• Changelog
Real milestones only, newest first.
quantax.space launched; design-partner program opened
Our public site went live, and we began accepting a small number of teams to shape the first pilot around one agent and one workflow.
CommitLayer prototype: supplier and invoice change workflow (propose → check → decide → record → recover)
The first working prototype runs supplier and invoice changes through policy checks and a named approver, recording every decision.
Research began on AI-agent safety: permissions, approvals and audit for agents acting in real business systems
We started studying how to give agents only the access they need and keep a person in the loop for consequential changes.
Company incorporated (Delaware)
Incorporated as a Delaware C-Corporation, focused on research across AI and quantum.
• Careers
We aren't listing open roles yet. If you're an exceptional engineer interested in AI safety, finance systems or agent infrastructure, we'd still like to hear from you.
01
Policy engines, evaluation and controls for systems that act.
02
ERPs, accounting platforms, vendor masters and the controls around them.
03
Audit logs, approvals and recovery that hold up in production.
• Status
• Legal
Effective October 2026
This policy explains how UnitedQuantumX Inc. ("we", "us"), which operates Quantax, handles personal information on quantax.space (the "site").
The site uses no tracking or advertising cookies and no third-party analytics. If you choose a light or dark theme, that preference is stored in your browser only.
To reply to you, evaluate design-partner and job enquiries, keep the site secure, and meet legal obligations. We do not sell personal information.
We share information only with service providers who help us run the site and email, under confidentiality obligations, or where the law requires it.
We keep correspondence only as long as needed for the purpose it was sent, or as the law requires.
You can ask to access, correct or delete personal information we hold about you. We will respond within a reasonable time.
We'll post any updates on this page with a new effective date.
Reach us with the . UnitedQuantumX Inc., 254 Chapman Rd, Ste 208 #22419, Newark, Delaware 19702, United States.
• Legal
Effective October 2026
These terms govern your use of quantax.space, operated by UnitedQuantumX Inc. on behalf of Quantax. By using the site you agree to them.
The site describes CommitLayer, which is in development and not yet publicly available. Nothing here is an offer to sell or a commitment to deliver any feature. Examples and demo data are illustrative.
The site's content, the Quantax and CommitLayer names and the site design belong to UnitedQuantumX Inc. You may link to the site and share its pages for non-commercial reference.
Links to other sites are provided for convenience. We aren't responsible for their content.
The site is provided "as is" without warranties of any kind. To the extent the law allows, UnitedQuantumX Inc. is not liable for any indirect or consequential loss arising from your use of the site.
These terms are governed by the laws of the State of Delaware, United States.
We may update these terms and will post the new effective date here. Questions? Use the .