Inference & Retrieval Architecture

OSCAR ENGINE — INFERENCE SPECIFICATION
INFERENCE ENGINE
Fine-tuned transformer stack · trained on automotive safety corpora and OEM audit resolutions
RETRIEVAL METHOD
Dense vector search · cosine similarity · k=12 top-k retrieval · pgvector / Weaviate
KNOWLEDGE BASE
ASPICE PAM 3.1 · ISO 26262:2018 (all 12 parts) · ISO 21434:2021 · ISO/PAS 21448 (SOTIF)
CONTEXT WINDOW
32,000 tokens per assessment session · stateless between sessions
ASSESSMENT LATENCY
<10 min for full artifact set · benchmarked at 50+ documents per session
HALLUCINATION CONTROL
Zero generic LLM hallucination · all findings anchored to retrieved standard clauses
KNOWLEDGE UPDATES
Standard ontologies updated per official release · versioned and auditable

Parser & Format Support

PARSER SUPPORT MATRIX
PARSER SUPPORT
SysML · ReqIF · EA XMI · PDF (native + OCR) · DOCX · XLS/XLSX · PNG · JPG · GIF
OCR ENGINE
Tesseract OCR with domain-specific preprocessing for engineering diagrams and tables
FILE SIZE LIMIT
200 MB per file · multiple files per session · within session token budget
NORMALISATION
Apache Tika + custom SysML extractor → format-agnostic structured JSON representation
PREPROCESSING
Zero manual reformatting required · no templates · no workflow change for engineering teams

Report & Integration Formats

OUTPUT SPECIFICATION
OUTPUT FORMATS
JSON (machine-readable) · PDF report · Jira ticket export · Azure DevOps integration
REPORT CONTENTS
Executive summary · clause-level findings · ASIL/capability ratings · remediation guidance
DELTA TRACKING
Version-aware comparison between consecutive assessment runs with full traceability
EVIDENCE PACK
Auditor-ready bundle: report PDF + JSON + per-requirement rationale + source artifact links
TRACEABILITY
Every finding linked to specific clause, artifact node, and version that triggered the gap

Infrastructure & Hosting Options

DEPLOYMENT OPTIONS
DEPLOYMENT OPTIONS
Air-gapped on-prem · Private VPC (AWS / Azure / GCP) · SaaS single-tenant
ON-PREM DELIVERY
Secure offline installer · model weights on encrypted media · zero outbound calls during inference
VPC REGIONS
EU-only · Frankfurt (AWS eu-central-1) · Amsterdam (Azure West Europe)
SAAS ISOLATION
Single-tenant · dedicated vector namespace · no shared compute during assessment
AIR-GAP SUPPORT
Full inference with no external network calls · suitable for classified defence environments

Encryption, Authentication & Compliance

SECURITY & COMPLIANCE SPECIFICATION
ENCRYPTION AT REST
AES-256
ENCRYPTION IN TRANSIT
TLS 1.3 minimum
AUTHENTICATION
SAML 2.0 · OIDC · SSO · RBAC per tenant
DATA RESIDENCY
EU-only · GDPR Article 28 compliant · zero cross-tenant data access
ARTIFACT RETENTION
Deleted post-session (SaaS) · customer-controlled (on-prem / VPC)
MODEL TRAINING POLICY
Zero model training or fine-tuning on customer artifacts — contractually enforced
ACCESS CONTROL
RBAC · per-project scoping · immutable audit log
CERTIFICATIONS
GDPR Art.28 DPA included · ISO 27001 path in progress · TÜV tool qualification in progress
SOC 2 Status
Type II audit path in progress
GDPR
Art.28 DPA · EU-only residency
TÜV Qualification
Safety tool qualification in progress
ISO 27001
Certification path in progress

Questions about the specification or want to validate deployment requirements?

Contact Engineering Team →