Where ARIA Fits
Bridging the AI Liability Gap
Guardrails watch the words. Sandboxes guard the machine. ARIA guards the action. That is the point where an AI actually does something. If policy says no, it doesn't happen.
Where Each Category Operates
1. Advisory Guardrails
Lakera, NeMo, Aporia
Words in, words out (fail-open risk)
2. ARIA Micro-Hypervisor
Blocks The Action Itself
If policy says no, it doesn't happen (<500µs)
3. Container Sandboxes
Firecracker, gVisor
Isolate the machine, not the action
| Capability Dimension | Advisory Guardrails | Infrastructure Sandboxes | ARIA Micro-Hypervisor |
|---|---|---|---|
| Primary Focus | Content & Prompt Filtering | OS Memory & Syscall Security | The Action Itself |
| Execution Point | In-Process / Sidecar HTTP Proxy | VM / Kernel Hypervisor Barrier | Hardware & API Boundary |
| Failure Mode | Fail-Open (Text Fallback) | VM Crash / OOM Kill | Fail-Closed (POL_002/AUTH_001 Block) |
| Audit Trail | Cloud Log Analytics | OS Syslogs / stderr | Ed25519 Signed WORM Ledger |
| Privacy & Retention | Single Payload Log (GDPR Risk) | Unstructured Disk Writes | CAS Dual-Layer (GDPR Art. 17 + SOX) |
| Capital Impact | Tooling Expense | Infrastructure Overhead | £200M–£500M Capital Reserve Release |
Book an evaluation. Bring a real deployment. Leave with a record you can verify.
In-person talks for risk officers, security researchers, and audit teams. No account. No browser scripts.