We do not have any yet.
This platform has not been used for a live issuance, so there are no case studies. The anonymised composites that usually fill this page would be fabricated, and this system is built on a rule against exactly that.
What we can show instead
Judge infrastructure on what it refuses to do incorrectly, not on testimonials.
Evidence in place of anecdote
Row-level security verified to return zero rows without a tenant context. A cross-tenant write refused by the database regardless of application code. Ledger entries and audit events that cannot be updated or deleted by the application role. A deferred constraint that refuses debits of 100 against credits of 99 at COMMIT.
Those are controls that were run and observed, not described. Every one of them is reproducible against this deployment.