Frequently asked questions.
Everything teams ask before installing Axiru \u2014 setup, pricing, security, AI agents, and roadmap. If you don't see your question, reach out.
Browse by category.
The most common questions, organized by what teams typically ask first.
Getting started
How long does it take to install Axiru?
Less than 10 minutes. Connect Stripe via the App Marketplace, pick a policy template, and you're in shadow mode replaying 90 days of history.
Do I need to write code?
No. Shadow mode and Live Launch use the policy templates as-is. The visual policy builder (Control+) lets you customize without code. API access is available on Scale+ for teams that prefer infrastructure-as-code.
Will Axiru break my existing Stripe integration?
No. Shadow mode is read-only. Enforcement intercepts only the API calls your team or agents make through Axiru's gateway — your existing Stripe code keeps working. You opt in path by path.
How is Axiru different from Stripe Radar?
Stripe Radar protects you on the incoming charge — it fires before a card is charged. Axiru protects you on the outgoing dollar — refunds, credits, payouts, transfers, disputes, app-fee refunds. They are complementary, not competitive.
Pricing & billing
What's a "live governed decision"?
One Stripe event evaluated by Axiru's enforcement policy in real time. Shadow-mode replays don't count. A multi-step approval (ALLOW → APPROVE_REQUIRED → APPROVED) is still one decision.
Is Free Audit really free forever?
Yes. Shadow mode is permanently free with unlimited replay and simulation. We charge only when you turn enforcement on.
What if I exceed my included decisions?
You pay the overage rate per 1,000 additional decisions. We notify at 80%, 100%, and 120%. No hard cut-off unless you configure one.
Do you offer a startup discount?
50% off Control for 6 months for YC, Techstars, and a16z portfolio companies under $5M ARR.
Security & compliance
Do you store credit card data?
Never. Axiru reads Stripe event references — we are out of PCI scope by design.
Where is data stored?
US-East (Neon Postgres). EU residency available on Enterprise plans.
Are you SOC 2 certified?
SOC 2 Type I expected Q3 2026; Type II targeted Q1 2027. We can share our internal control documentation and security posture letter on request.
Can I get a DPA?
Yes — GDPR-aligned DPA available on request.
Product specifics
What can the audit log prove?
For any decision, you can show which Stripe event triggered it, which policy version was active, which rule matched, who or what (human or agent) was the actor, the outcome, and a SHA-256 hash chained to the previous entry — tamper-evident. Audit exports re-hash identically across runs, so a regulator can verify the export on the spot.
How fast is policy evaluation?
Median <50ms per event. P99 under 150ms. Evaluation happens in-region at the Vercel edge near your Stripe webhook origin.
Can I run Axiru on-prem?
VPC and on-prem deployment is available on Enterprise contracts. The policy engine is packaged as a portable runtime.
Does Axiru work with Stripe Connect / marketplaces?
Yes — Connect is a first-class use case. You govern money movement across all connected merchants from one control plane.
Can AI agents use Axiru?
Yes. Axiru exposes a native MCP server. Any MCP-compatible agent (Claude Desktop, Cursor, Continue, custom agents) can request refunds, install policies, list and approve decisions — through the same auth path as humans. Every agent action is logged with the agent identity.
What if I want to override Axiru in an emergency?
The kill switch halts everything instantly. Org admins can disable enforcement org-wide or per-agent. Every override is itself audit-logged.
AI agents
Why does an AI agent need a financial firewall?
Because once an agent has the credentials to issue a refund, there is nothing between it and Stripe. Prompt injection, hallucinated reasoning, or a buggy chain can trigger real money movement. Axiru is the deterministic policy layer that decides whether the agent's request actually executes.
Can Axiru block an agent without breaking the agent's logic?
Yes. The gateway returns a structured rejection the agent can handle — typically "REQUIRES_APPROVAL" with a deep link to the approval queue. The agent surfaces this to the user; the human approves or denies; the decision executes (or doesn't).
Do you have an OSS policy schema?
We publish agent.json and the policy schema spec at axiru.com/agent-schema. The full policy engine is closed-source today.
Roadmap & company
Who is behind Axiru?
A small, technical team based in Miami. Founder background in fintech, payments, and AI-agent infrastructure.
Are you funded?
We will share fundraise specifics on a call. The product is built and live.
When will Plaid / ACH support ship?
Plaid and ACH governance are on the post-launch roadmap. We're prioritizing based on customer pull — if it's a deal-blocker, tell us.
Do you have customer references?
Design partners are available for reference calls after a mutual NDA. Ask your Axiru contact.
Still have questions?
Connect Stripe read-only and replay 90 days of history in shadow mode \u2014 free, forever. Or book a 30-minute call to walk through your specific outflow policies.
Start in shadow mode first. Move to live enforcement later.