Talyrn — Protocol-enforced risk limits for AI agents on Canton Network
Risk infrastructure for agentic DeFi · Canton Network

Give your agent capital. Not unlimited capital.

Talyrn enforces exposure limits, approved venues, and leverage caps at the protocol level — so AI agents can trade, lend, and provide liquidity across Canton DeFi without ever exceeding what they're authorized to do.

FLYWEIGHT ASSEMBLY REGULATING LINKAGE HARD STOP 412.0 Ø 270.0 DEX · SPOT PERPS LENDING LP / AMM ALL VENUES · ONE MANDATE 1 2 3
MANDATE / TITLE BLOCKDWG. TLN-0001 · REV. 01
MAX EXPOSURE
$0
LEVERAGE CAP
0.0x
APPROVED VENUES
0
STATUS
— — —

Compliance won't approve what it can't bound.

Institutions are ready to let AI agents run real DeFi strategies — trading, lending, rebalancing — but no risk team signs off on an agent with unlimited reach. Internal policy isn't enforcement. A system prompt isn't a control. Without a hard boundary built into the execution layer itself, "the agent is supposed to stay within limits" is a sentence that ends careers.

Talyrn moves the limit from policy into protocol.

θ = 20° MAX 38° HARD STOP
SHEET 02 / OPERATING SEQUENCE

How a mandate becomes a hard limit.

01

Define the mandate

Set exposure caps, approved venues, a leverage ceiling, and a counterparty allowlist for the agent.

02

Agent operates

The agent trades, lends, or provides liquidity autonomously across Canton DeFi within its mandate.

03

Enforcement, not review

Every action is checked against the mandate before execution; anything outside it fails at the protocol level, not after the fact.

04

Private audit trail

A full activity log exists for the institution's own risk and compliance teams, invisible to the rest of the network.

Built on the network designed for this.

A-01

Privacy that protects strategy

Positions and venue activity stay need-to-know. Nothing about an agent's strategy is visible to competitors or other network participants.

A-02

Enforcement at the protocol layer

Limits aren't a setting an agent can ignore under pressure. They're enforced the same way a smart contract enforces any other rule.

A-03

Built for institutions already here

Canton is the network being adopted by major financial institutions for exactly this kind of accountable, auditable infrastructure.

SHEET 03 / CONTROL PANEL

Built for the people who have to sign off on it.

Talyrn isn't a trading strategy and it doesn't make decisions for your agent. It's the boundary your risk team defines once, and your agent can never cross — no matter how the strategy evolves, no matter what the model decides in the moment.

003 MAX EXPOSURE LEVERAGE CAP APPROVED VENUES COUNTERPARTY ALLOWLIST

Enforced, not promised.

NO OVERRIDE

Once set, a mandate cannot be loosened mid-session — not by the agent, not by an emergency request — until it is explicitly redefined.

REJECT, DON'T FLAG

A breaching transaction is rejected outright — never queued for approval, retried, or partially executed.

PROVABLE, NOT JUST LOGGED

Every enforcement decision is recorded so the institution's own risk team can verify it independently.

Set the boundary. Let the agent work inside it.