Architecture
Between intelligence
and execution.
Four layers. One boundary.
L1
Autonomy Layer
Decides what it wants to do
- VLA Models
- Planning
- Navigation
- Perception
- Agents
L2
Pomerion
Decides whether it can
- Machine Identity
- Model Identity
- Attestation
- Policy Engine
- Authorization Runtime
- Deployment Control
- Audit
L3
Machine Runtime
Executes authorized commands
- ROS / ROS 2
- Robot Controller
- Vehicle Controller
- Flight Controller
- Edge Runtime
L4
Physical World
Consequences
- Motors
- Actuators
- Movement
- Manipulation
- Vehicles
- Machines
Four distinct questions.
01
Identity establishes who or what is acting.
Each machine holds a hardware-rooted, cryptographically verifiable identity, distinct from the operators and cloud workloads around it.
02
Attestation establishes what is running.
Before authority is granted, the machine proves its hardware, firmware, software and model state.
03
Policy determines what is permitted.
Declarative rules bind machines and models to capabilities, resources, zones and conditions.
04
Authorization determines whether the physical action happens.
Every request is evaluated at the boundary, before commands reach the controller.
The life of an authorization decision.
- step 01
Intent issued by autonomy stack
- step 02
Identity verified
- step 03
Attestation checked
- step 04
Policy evaluated in context
- step 05
Decision returned: allow / deny
- step 06
Command released or withheld
- step 07
Decision recorded to audit