OTHER INDUSTRIES · THE ROADMAP AFTER BANKING

The systems that run the regulated business.

Churchill protects any critical Linux application that must stay in its approved state. Banking payment systems are first, and the same guarantee applies wherever a regulated business runs on software no one should change unilaterally. These are next on the roadmap.

ROADMAP

Where this applies after payments.

01 · Roadmap

Electronic health records

The system of record for patient care. Integrity and availability of ePHI are named obligations, and an unauthorized change to the EHR is a reportable event, not an IT ticket.

02 · Roadmap

Pharmacy and lab systems

Dosing, dispensing, and results. Applications where a silent change puts patients at risk, and where proof that nothing changed is worth as much as the prevention itself.

03 · Roadmap

AI agent runtimes

The application that acts autonomously is the one that most needs a state it cannot leave. Churchill holds the runtime to its approved baseline, with a kill switch that was original equipment, not an add-on.

04 · Roadmap

Industrial control systems

Plants, grids, and utilities run on hosts where change is rare, planned, and dangerous when unilateral. A refused change beats a detected one every time.

05 · Roadmap

ERP and supply chain backbones

The backbone that pays vendors, moves inventory, and closes the books. Living-off-the-land attacks and config drift end at the gate.

06 · Roadmap

Mainframe partitions running the regulated business

Linux partitions on the frame already carry the regulated workload. Churchill was built and validated there, on IBM LinuxONE.

The control is the same in every industry: only the application your quorum approved runs, unauthorized change is refused at the kernel, and every attempt becomes evidence. What changes is which system counts as critical, and which regulator asks for the proof.

TALK TO US EARLY

Running one of these systems today?

The roadmap order is not fixed in stone. Early conversations in these industries shape what we build next.

Built and validated on IBM LinuxONE.

IBM Technology Partner, Partner Plus Gold tier. Linux kernel 5.0 and higher, at full strength from 5.7. x86_64 and IBM Z / LinuxONE today, across containers, virtual machines, and bare metal.

ANTHROPIC Cyber Verification Program

Mythos, run against Churchill under structured conditions.

As a participant in Anthropic's Cyber Verification Program we obtained access to Mythos and ran it against Churchill: 29 documented sessions from four distinct adversarial operators, 11.3 cumulative hours, 406,433 enforcement decisions. 100% containment. Zero data exfiltrated.

These are measured test results, not an Anthropic endorsement, certification, or recommendation of Churchill. The 30-day public capture-the-flag is a separate program with its own result set.