Governed Protocol Engine · Compliance Suite

We don't do the work.
We govern the proof
the work was done.

GovProtocol is a domain-agnostic governance engine powering structured compliance programmes. Phased protocols, tamper-evident evidence, audit-ready documentation.

"GovProtocol sells proof, not expertise —
complementary to advisory firms, not competing with them."
Navigation — structured, phased compliance journey
Prioritisation — assessment-driven sequencing
Documentation — tamper-evident, audit-ready evidence
How the engine works

Four layers. Every product.

Every GovProtocol programme runs on the same engine. The compliance domain changes — the governance architecture does not.

01

Assessment

Structured questionnaire identifies priority areas, sequences the programme, and creates a personalised compliance path based on your organisation's profile.

02

Guided tasks

Three-layer guidance per task: statutory requirement in plain English, an inclusion checklist of what evidence must contain, and an annotated illustrative example.

03

Evidence collection

Users upload documents. Each file is SHA-256 hashed on upload. An AI document scan cross-references against the statutory checklist — traffic-light output, not legal opinion.

04

Tamper-evident export

A governed activity record captures every task, timestamp, and evidence hash — sealed in a tamper-evident PDF audit pack that survives regulatory scrutiny.

Compliance suite

Seven modules. One engine.

Domain-specific compliance programmes — each a standalone product, all running on the same governed architecture.

🔒

GDPRLedger

gdprledger.com
Live

Structured GDPR governance programme for SMEs and professional services firms. Work through 54 guided tasks, upload evidence, and generate a SHA-256 tamper-evident audit pack.

54 governed tasks across 5 phases
ROPA, lawful basis mapping, all rights procedures
AI prompt generator + document structure scan
SHA-256 tamper-evident evidence pack
Pro tier — AML/GDPR dual-framework for professional services
One-off payment — Standard €149 · Pro €499

AML Guard

amlguard.com
Coming soon

Anti-money laundering compliance programme for MLR 2017 regulated firms — accountants, solicitors, estate agents, and high-value dealers.

·
Firm-wide risk assessment (MLR 2017 Reg. 18)
·
CDD and enhanced due diligence procedures
·
SAR workflow and NCA reporting documentation
·
MLRO appointment and responsibilities pack
·
Staff training evidence and records
👥

EmployReady

employledger.com
Coming soon

Employment law compliance verification for employers. Evidence that you met your statutory obligations — not contract drafting, compliance verification.

·
Section 1 written statement compliance check
·
Right-to-work documentation and records
·
Working Time Regulations compliance evidence
·
Statutory leave entitlement documentation
·
UK GDPR employer obligations (DPA 2018)
🏢

CorpSec

corpsec.io
Coming soon

Corporate governance compliance for UK limited companies. Director duties, statutory registers, Companies House filings — documented and evidenced.

·
Director duties documentation (CA 2006 s.172–177)
·
PSC register compliance and filing evidence
·
Confirmation statement governance record
·
Statutory books and minute-keeping evidence
·
Conflict of interest procedure documentation
📣

WhistleReady

whistleready.com
Coming soon

Whistleblowing programme governance for organisations with 50+ employees. Policy, reporting channels, investigation procedures — all documented.

·
Whistleblowing policy documentation and evidence
·
Internal reporting channel establishment record
·
Investigation procedure and escalation path
·
Staff awareness and training evidence
·
Non-retaliation policy governance record
🛡

InfoSec Ready

infosecready.com
Coming soon

Information security governance programme. ISO 27001-aligned controls, incident response procedures, and supplier security assessment — evidenced and audit-ready.

·
Information security policy documentation
·
Asset register and classification evidence
·
Incident response plan and log governance
·
Supplier security assessment records
·
Access control and review documentation
Why GovProtocol

Governance is not advice. It is evidence.

Most compliance tools tell you what to do. GovProtocol records that you did it — with timestamps, SHA-256 integrity hashing, and a tamper-evident audit pack that survives regulatory scrutiny.

The engine enforces phased protocols. Users work through structured tasks, upload evidence, and mark completion. Every action is logged. Every document is hashed. The output is a governed activity record — not an opinion, not a certificate. Proof of process.

GovProtocol does not compete with compliance consultants or advisory firms. It records and evidences the work they recommend. It is additive to every professional advisory relationship.

SHA-256
Tamper-evident hashing on every document
6
Compliance modules in the suite
0
Legal opinions given — ever
100%
EU data residency — dedicated servers, Germany
About

Built by practitioners.
For organisations that need proof.

GovProtocol is built and operated by PERTHEO LIMITED, a Cyprus-registered technology company. The engine is domain-agnostic — the same governance architecture powers every compliance product in the suite.

GovProtocol is not a law firm, a compliance consultancy, or a certification body. It does not provide legal advice, determine compliance, or certify adequacy. It governs the documented evidence that your organisation engaged seriously with its obligations.

Every product in the suite is designed to complement professional advisory relationships — not replace them.

EU Entity

PERTHEO LIMITED

Cyprus · HE 385082 · Lead supervisory authority: Cyprus Commissioner for Personal Data Protection · Powers all EU compliance modules

UK Entity

PHP PERRTHEO LIMITED

United Kingdom · 07179540 · Lead supervisory authority: ICO · Powers UK-specific compliance modules including EmployReady

Infrastructure

Dedicated servers, EU (Germany)

Dedicated servers · EU (Germany) · ISO 27001 certified infrastructure · All application data and evidence files stored within the EEA