Founder · 1 product on SaaS Hive

What I built: Aria, an AI security analyst that investigates threats, explains the evidence, and shows you what an attack actually touched. It's voice-native, and it runs fully on-prem so telemetry never leaves your network.Who it's for: Security teams that don't have a 24/7 SOC, and organizations in regulated or sovereign markets (GCC, EU, government, banking) where sending security data to a US cloud isn't an option.Why I started: A few weeks ago I locked myself out of Bitwarden, 1Password, my email, and my domain registrar, all at once. 180+ accounts, gone, recursively. It took two weeks to get back in. I spent that time thinking about how much of security is invisible until it isn't, and how little help there is when you're the only person responsible for it. Aria is the tool I wanted during those two weeks: something that can look, explain, and act, but only as far as you've let it.That last part matters to me. Aria has a Trust Ladder: it earns autonomy tier by tier from verified outcomes, and it can't promote itself. I don't think AI should be trusted by default in security. It should have to show its work.I learned to code at the start of this year. Aria is my second project. The first was AskSary, which reached ~3,000 users across 5 platforms. I'm a product and design person before I'm an engineer, so I'd rather be told what's broken than what's clever.Feedback that would help most: I'm still deciding how hard to lean on sovereignty and on-prem as the wedge versus leading with "AI analyst that explains itself." If you've sold into regulated or government buyers, which one opens the door faster?
Most AI security tools ask you to trust them on day one. Aria starts at zero. It investigates a threat, explains the evidence and blast radius, and proposes an action, but a human approves it. Every approval, override, and outcome is logged. Only after it's been verifiably right does it move up a tier. It cannot promote itself.It runs on-prem on a local model, so nothing leaves the network. Source-available under BSL 1.1, so you can read exactly how the governance works instead of taking my word for it.