An advanced EVE CoreGuard module

Govern model and version changes before they ship

Models, prompts, policies, adapters, and agent versions change constantly — often silently. Model Update Firewall is a CoreGuard module that evaluates each change against policy before it reaches production, so governed behavior holds across model and provider updates.

What It Governs

Every change to deployed behavior, gated before it ships

Model swaps & providers

A new base model or provider — including silent vendor updates — must clear policy before it governs live decisions.

Prompt & template changes

Changes to system prompts and templates are evaluated as a governed change, not shipped unreviewed.

Policy-pack updates

Updates to the versioned policy packs themselves are gated, so the control plane changes deliberately.

Adapter & fine-tune changes

New adapters, LoRAs, or fine-tunes are treated as a change to deployed behavior and evaluated accordingly.

Agent-version changes

New agent versions and tool configurations must pass the deployment gate before they act on the world.

Signed change record

Each change decision — approve, modify, or block — is bound to the policy version and emitted as signed evidence.

How It Fits

A pre-deployment gate inside EVE CoreGuard

Model Update Firewall extends the same deterministic gate that governs runtime actions to the moment a change is deployed. Where EVE CoreGuard evaluates each live action and EVE Proof signs the evidence, Model Update Firewall evaluates each proposed change to the deployed configuration — so nothing about how decisions are made changes silently. It is not a fourth product; it is a module of CoreGuard’s enforcement platform.

Why It Matters

Silent changes are how governed behavior drifts

A model provider ships an update, a prompt is tweaked, an adapter is swapped — and a regulated decision quietly starts behaving differently, with no one having approved that change. For lending, insurance, healthcare, and government workloads, that is exactly the kind of undocumented change an examiner asks about. Model Update Firewall makes each change a governed, evidenced decision, so behavior stays within policy and every change has a signed record.

Pricing

Included with EVE CoreGuard by tier

Model Update Firewall is a CoreGuard module, not a separately-priced product. It is included or available by CoreGuard tier — the pricing page is the single source of truth.

EVE CoreGuard tierModel Update Firewall
Design Partner PilotEnabled for the pilot use case
Enforcement LicenseAvailable as a paid add-on
Enterprise GovernanceIncluded
Sovereign InfrastructureIncluded, with custom policy controls

One clean commercial structure

EVE CoreGuard is enforcement, EVE Proof is verification and replay, Trust Services is independent assurance, and Model Update Firewall is a CoreGuard module. See /pricing for tiers and terms.

Common Questions

FAQ

Govern your model and version changes

See it on one of your deployment changes

Bring a model, prompt, or policy change and we’ll run it through the deployment gate, show the governed decision, and let you verify the signed record. Pricing is by CoreGuard tier — see /pricing.

Related: EVE CoreGuard · EVE Proof · Live demo · Pricing.