ThePlus Tech
Founder

Theophilus Ogieva

Founder · AI and software engineer, London. Computer Science and Cybersecurity, University of Kent, 2025. I build and govern production systems that organisations must be able to trust, control and prove.

The questionRev 2026-09-08

What must be true before an autonomous system is allowed to act?

Every product below is an answer to it for one kind of consequential action: money moving, access granted, an agent acting on a mandate.

ScopeOne operator. The evidence on this site is from repository CI, not from customers, and the site says so wherever a number appears.

What I have built.

Four control planes on one capability model. Each carries its standing as it is, including the one that is still only a roadmap.

Agent Clearing Network

Governs delegated authority, signed mandates, delivery evidence, and clearing decisions between agents.

PostgreSQL-proven reference kernel

TrustLedger

Reconciles provider evidence against an authoritative double-entry ledger and routes exceptions for resolution.

Engine built · CI-verified against PostgreSQL

CyberGuardPlus

Turns endpoint and operational signals into investigations, evidence, and governed remediation actions.

Endpoint security MVP shipped

FleetOps

Authorises dispatch and maintenance decisions against policy, and keeps the evidence that proves each one.

Resilience and control implementation evidenced

AI Governance Platform

Maps AI systems to obligations, control owners, monitoring evidence, and human accountability.

Control-plane product roadmap

How I engineer.

The rules the work is held to. They are written down in an operating doctrine that every change is checked against, and they are the reason the site shows runs rather than adjectives.

  1. 01

    Evidence before assumptions

    I measure what the system actually does. A claim without the run behind it is only a claim, and the page says so where that is the case.

  2. 02

    Control before autonomy

    An agent receives explicit authority for a named action, with a budget and a mandate, not standing access to everything it might need.

  3. 03

    Verify the outcome, not the response

    A 200 from an API is not a settled payment or a closed incident. The check is against what changed in the world, after the call returned.

  4. 04

    Security by architecture

    Identity, policy and audit sit inside the system as its first layers. They are not a filter bolted to the edge once the feature works.

  5. 05

    Products from repeated pain

    Engineering investment follows a problem that has appeared more than once with a budget owner behind it. Nothing here was built because it was interesting.

Background.

Security is the training; production systems that act on their own are the work. ThePlus Tech is a London sole trader, and the person you email is the person who does the engineering.