Calverith

Engineering for systems that must not fail.

Calverith is an engineering practice. We build for environments where failure is not an option: financial rails, ledger infrastructure, security-critical platforms, and operations across multiple jurisdictions.

Software is cheap to produce now. Proving it still does what it claims — under audit, under load, eighteen months from now — is the part that remains hard.

That proof is what we deliver. Every engagement closes with source, documentation, and a verification path your own team can run without us.

what we build

Platform Engineering

Custom platforms for teams that have outgrown off-the-shelf tooling: multi-tenant products, internal operations systems, billing, and reporting. We carry systems from first architecture sketch to production, and keep them maintainable after handover.

Backend and Infrastructure

Backends, APIs, and data pipelines engineered for low latency and boring predictability under real traffic. Kubernetes-based infrastructure, automated delivery pipelines, and monitoring that catches drift before your customers do.

Canton Network and Daml

Ledger applications, validator operations, and tooling for builders and operators on the Canton Network. We run our own validator on mainnet, so every tool we ship has been exercised against a live node first.

Security and Audit Readiness

Threat modelling, hardening, key management, and incident preparation across financial, industrial, and blockchain infrastructure. Every decision is written down, every change stays traceable, and reviewers can reproduce our work independently.

Operations and Compliance Automation

Document workflows, approval chains, reporting, and internal tooling for organisations that answer to several regulators at once. Built from systems we operate day to day, not from slideware.

Applied AI and Automation

Agents and LLM-backed workflows wired into existing business logic, with routine work handled automatically and judgement left with people. Deployed with strict usage limits, full audit trails, and hard enforcement controls.

how we work

You speak to the builders

No account managers between you and the people writing the code. One named engineer owns your result from the first call, and that name does not quietly change mid-project.

Scope in writing, first

Work starts from a written specification with acceptance criteria you sign off. If a requirement cannot be stated as a checkable outcome, we keep rewriting it until it can.

Handover is the deliverable

Source, documentation, deployment runbooks, and the test suite. Your team should be able to run, change, and extend the system without ever calling us back.

We decline work

If a brief sits outside what we do well, we say so in the first conversation and, where we can, point you at someone better placed to take it.

who we are

A small permanent core

A standing core team owns architecture, security, and delivery, drawing on a bench of specialists brought in per engagement. The same core stays on your project from scoping to handover — nothing gets passed to a stranger halfway through.

Where we come from

Security engineering against banking and government standards, distributed systems, and financial software. On the operations side, corporate structuring and administration across several jurisdictions — which is why we build compliance tooling ourselves instead of reselling it.

How we take on work

Fixed scope with defined milestones, or a retained engagement when a system needs continuous attention. We turn down anything that would leave you structurally dependent on us to keep running.

contact

Describe what you are building, what is blocking it, and when you need it. The reply comes from the engineer who would actually do the work.