StratoFoundry has unveiled KARL, a temporal memory and evidence infrastructure primitive designed to reconstruct past data states, track AI provenance, and deliver offline-verifiable audit proofs across fragmented enterprise systems, as shown on IT Press Tour.
As enterprise IT environments grow increasingly complex, organizations face a critical continuity gap: while object storage scales raw content efficiently, the operational context, historical governance, and authoritative rights behind decisions vanish over time. When auditors or incident responders ask why a specific action was taken in the past, traditional storage systems offer current operational states rather than the historical evidence valid at the moment of decision. To solve this structural deficit, French technology startup StratoFoundry, founded in July 2026, has introduced KARL (Knowledge Analysis Response Learning)—a temporal memory and cryptographic evidence layer built directly on top of S3-compatible storage.
The rapid proliferation of unstructured data and autonomous AI agent workflows has exposed fundamental limitations in traditional enterprise data architecture. Standard block, file, and object storage systems excel at retaining raw binary data. However, they fail to preserve the temporal context, version lineage, access rights, and policy states that govern business operations. When a critical business event or cyber incident occurs, organizations are frequently unable to explain why a decision was made under a past state that no longer exists.
Addressing the Infrastructure Continuity Gap
Architected by Emmanuel Forgues—an EPITA-trained software engineer, Sciences Po Paris graduate, and distributed systems expert with nearly three decades of enterprise pre-sales experience—StratoFoundry was established to transform S3-based infrastructure into trusted data systems. Joined by CTO Sami Fredj, Chief AI Officer Thomas Raymond, and Chief Strategy Officer Danice Cassam Chenai, the leadership team engineered KARL to act as an unalterable, cross-system knowledge layer.
Rather than serving as another storage repository or displacing core systems like ERPs, Electronic Document Management (EDM), or SIEMs, KARL functions as a governed flow bus. It binds an authoritative source object to its derived representations (such as text indexes, OCR transcripts, or vector embeddings) without relinquishing the absolute primacy of the original record. Existing enterprise tools continue operating normally while exchanging events, proofs, context, and trusted states through KARL’s temporal core.
Core Architectural Primitives and Technical Rigor
At the center of the architecture sits KARL Core v2, an immutable, memory-safe runtime written entirely in 100% Rust. Built on a codebase comprising 21 Rust crates, 875 automated tests, and 110 documented RPC methods, KARL Core provides a fail-closed policy engine combining Role-Based and Attribute-Based Access Control (RBAC/ABAC) across REST, JSON-RPC, and gRPC endpoints.
Every write operation executed within the governed scope generates a timestamped, addressable version without requiring manual intervention. Mutated states are recorded as events in an append-only journal signed using Ed25519 cryptography, structured via Merkle tree checkpoints, and optionally anchored using RFC 3161 external trusted timestamping authorities. Furthermore, KARL’s multi-tenant architecture supports shared or dedicated S3 bucket topologies with strict tenant-level isolation, per-tenant signing keys, and billing-grade signed usage rollups.
This technical framework allows organizations to navigate history across four key operational vectors:
- Search: Locating exact objects, past versions, and active contextual states at a precise timestamp.
- Compliance: Reconstructing past authorizations, policy enforcement thresholds, and governance gaps.
- Evidence: Generating exportable, tamper-evident cryptographic dossiers for offline inspection by external auditors.
- Restore: Identifying verified trusted states to guide disaster recovery engines.
Product Suite, Governance, and Go-to-Market Strategy
StratoFoundry’s broader portfolio operationalizes this cryptographic core through specialized tools and reference applications. The commercial portfolio includes S3Guardian, an enterprise-grade S3 replication solution distributed through indirect partner channels with capacity-based annual licenses and S3Proxy, which abstracts storage targets through stable virtual buckets.
For data mobility, KARL Transit moves complete governed datasets as sealed, encrypted KMLX archives. By retaining content, metadata, and cryptographic proofs end-to-end, Transit ensures that data portability does not break lineage or ruin auditability. Additional specialized modules include KARL Forge (for qualifying AI-generated software releases against strict specification chains), KARL Foundry (a local model distillation factory running on sovereign NVIDIA GB10 hardware), KARL Audit, KARL Cyber, and KARL Compass (an AI-augmented executive board framework).

Dr. Jakob Jung is Editor-in-Chief of Security Storage and Channel Germany. He has been working in IT journalism for more than 20 years. His career includes Computer Reseller News, Heise Resale, Informationweek, Techtarget (storage and data center) and ChannelBiz. He also freelances for numerous IT publications, including Computerwoche, Channelpartner, IT-Business, Storage-Insider and ZDnet. His main topics are channel, storage, security, data center, ERP and CRM.
Contact via Mail: jakob.jung@security-storage-und-channel-germany.de