🏆 KI Innovation Award 2026 — Finalist  ·  Organisers: F.A.Z. Institut · KI Bundesverband
Real-time stability analysis for AI outputs

The AI delivers the answer. Waiva® measures
whether you can trust it.

Waiva® checks in real time how reliable an AI answer is. It spots when the AI starts to slip, makes things up, or tells you what you want to hear — with any AI system, without storing your data. Protected technology. Ready for enterprise use.

🏆 KI Innovation Award 2026 Finalist
® Waiva® DPMA trademark No. 30 2025 261 212
⚙️ Utility model sReact DPMA, registered 13 June 2026
📄 2 preprints SSRN + Zenodo
🏛️ KI Bundesverband member as AI expert
🔬 11,570 scored AI responses
Matthias Braun — developer of Waiva®
The person behind Waiva®

Over 25 years in finance. Spotted what mattered.

Matthias Braun is a banking economist (Frankfurt School of Finance & Management) — with more than 25 years in the financial industry: overall bank management, risk models for billion-euro portfolios, two BaFin audits. Plus years as responsible controller at a global market leader in drive technology.

What was missing was a tool: not one that filters or censors, but one that simply measures how structurally stable an AI response is. That gap turned into research — 11,570 scored responses across 258 documented conversations, two published preprints, and finally Waiva®.

KI Innovation Award 2026 Finalist. Member of the KI Bundesverband (the German AI association) since August 2026 — admitted as an individual in the AI experts category, an exceptional route for people with prior achievements in AI research or its advancement. Admission is decided by the executive board.

Waiva® – KI Innovation Award 2026 Finalist · Organisers: F.A.Z. Institut · KI Bundesverband
EU AI Act Art. 26

Deadlines shifted. Obligations did not.

Article 26 of the AI Regulation (EU 2024/1689) obligates deployers — not providers — to actively monitor AI outputs. The Digital Omnibus — confirmed by the Council on 29 June 2026 — shifted the application deadlines for high-risk AI to December 2027 (Annex III) and August 2028 (Annex I) — but did not change the requirements themselves.

The problem remains: what happens inside the black box is not controllable. Training, alignment, safeguards — all outside your reach. You are responsible for what comes out.

The postponement creates a window — for companies that prepare in a structured way now, instead of reacting under pressure in 2027. Waiva® sits at the one place you can control: between the AI output and the decision.

The safeguards built into AI models are the vendor's own controls. The EU AI Act requires more from the user: oversight that is independent of the AI vendor. Waiva® provides that independent check — traceable, reproducible, with no access to the model's internals. As a standalone solution or as a module for GRC platforms, systems integrators and internal compliance frameworks.

AI Act requirement Waiva® implementation
Monitor AI outputs Real-time score per response
Detect anomalies Several drift indicators, weighted
Ensure human oversight Score visible before every decision
Ability to intervene +1 correction impulse on drift
Document human oversight Structured audit trail
Technology

How Waiva® works

Rule-based, deterministic, reproducible — developed from 11,570 scored human–AI responses. No second model in the evaluation loop.

📊

Spots when the AI becomes unreliable

Waiva® tracks several signals at once — whether the AI is making things up, telling you what you want to hear, or acting with false confidence. Developed from 11,570 scored responses.

🎯

Stability score 0–90

A clear score makes the structural stability of a response instantly visible. Deliberately capped at 90: the last 10% of responsibility stay with the human — by design.

🔄

Correction impulses

When drift is detected, Waiva® shows the matching counter-stimulus — the +1 impulse. Not as an instruction, but as orientation for the next input.

Real-time, ~100 ms

Every response is analyzed live. The signal appears while you are still reading — not afterwards.

🤖

Works with any AI

ChatGPT, Claude, Gemini or another — Waiva® checks every AI answer the same way, without access to the AI itself. Ready for future AI systems too.

🔒

No data stored. GDPR compliant.

Waiva® only analyses briefly in memory. Nothing you ask, nothing the AI answers is stored. The data processing agreement with IONOS Germany is in place.

The sReact formula
sreact = η × (1 − Δ)
η Epistemic self-control — does the AI show appropriate caution on uncertain statements?
Δ Aggregated drift — weighted sum of several independent behavioral indicators
S Stability score 0–90. Utility model protected (DPMA, registered 13 June 2026)
Deterministic · Reproducible · No second model
Two levels of measurement

One formula. Two resolutions.

The same measurement rule works on two levels: on the single AI answer — and on entire process chains in which AI systems feed into one another.

S = η × (1 − Δ) Identical on both levels — deterministic, with no second AI model in the evaluation.
sReact

The single answer

Evaluates one AI output on its own: is the system making things up? Telling you what you want to hear? Speaking with false confidence? The signal appears while you are still reading.

Measures the epistemic integrity of an answer — not whether it pleases.
✓ Implemented · Real time ~100 ms
Works with any kind of AI

Built for today. Ready for tomorrow.

Waiva® measures not the AI itself but its answers — and therefore works with any system that produces text. Language AIs are only the beginning.

🤖

Language AIs (LLMs)

ChatGPT, Claude, Gemini and any other language AI — Waiva® checks them all the same way, without looking inside. Already implemented and tested.

✓ Implemented
⚙️

Decision systems

Rule-based systems, scoring models, hybrid AI approaches — anywhere answers are produced that humans base decisions on.

Applicable
Scientific foundation

Developed from research — published in two preprints

Waiva® is based on the +1 Principle — developed from 11,570 scored responses across 258 documented conversations, published in two preprints.

Independent research

The research behind Waiva® — documented in its own right

Two levels of measurement, two datasets, methodology and limits laid open. At matthias-braun-research.org the research stands on its own — no product, nothing for sale.

To the research site →
11,570scored responses
sReact
1,200measured transitions
sReact-A
50/58chains with an undocumented
final decision
Ready-to-deploy implementation

No pitch deck. A working demonstrator.

Waiva® is verified and deployment-ready. The algorithm core runs deterministically and reproducibly, the interfaces are documented — ready for a partner's technical due diligence.

  • Chrome extension (Manifest V3) — developed and tested for ChatGPT, Claude.ai, Gemini
  • FastAPI backend — V5.9, IONOS Berlin, GDPR DPA in place
  • REST API — documented, ready for integration
  • Fully verified algorithm core (sReact) — reproducible, deterministic
Waiva® browser extension in operation
Collaboration

Protected technology. Ready for the right partner.

Waiva® combines a scientific foundation, secured IP protection (utility model + registered trademark) and a working demonstrator. What's missing: a partner with distribution strength to bring the potential to market.

🔗

Integration as a technology module

The sReact engine complements your existing AI compliance platform or banking framework. Plug-in via REST API — no separate frontend, no new infrastructure required.

🏛️

Research partnership

Joint validation studies, industry-specific calibration (banking, insurance, healthcare), academic cooperation. Ideal for institutions with their own AI research focus.

🤝

Strategic partnership

Long-term collaboration at the intersection of AI governance × EU AI Act × financial industry. Relevant for financial service providers, insurers and their IT service providers.

Interested? Then let's talk.

No presentation, no deck. A 30-minute call to find out whether it fits.

contact@waiva.app
Clear boundaries

What Waiva® deliberately does not do

Waiva® does not verify facts. That stays with the human.

Waiva® does not rate people. Only responses.

Waiva® does not make decisions. You do.

Waiva® does not store content — technically guaranteed.

Waiva® does not monitor users. No logs, no profiles.

Waiva® does not intervene in responses. No filter, no block.

Data protection

Privacy by design — fully GDPR-compliant

Waiva® analyzes responses, not people. Your usage stays private. Your decisions remain yours.

🇩🇪

Hosting in Berlin — GDPR-compliant

IONOS server, German law, GDPR DPA in place. No US data transfers.

🔒

No data stored

Brief analysis in working memory only. Nothing is stored permanently — neither your questions nor the AI's answers.

🛡️

Security hardened

SSH key only, Fail2ban, TLS 1.3, daily backups. IONOS infrastructure.

0
stored prompts or responses
~100ms
Analysis time — in working memory only
EU
Hosting exclusively on EU servers (IONOS, Berlin)
Frequently asked

Waiva® — the key answers

What distinguishes Waiva® from guardrails and content filters?+

Guardrails and content filters act inside the AI itself or check for keywords. Waiva® sits behind the output — on your side. It analyses each response across several dimensions, understands its context and delivers reproducible results — without rewriting anything. You get a clear signal about stability before you act.

Why is the score capped at 90 — and not 100?+

The cap is a philosophical design decision: Waiva® measures structural stability (the how), not factual correctness, contextual relevance or individual fit. Those dimensions require human judgment. A score of 100 would falsely signal "take it as is." That contradicts EU AI Act Art. 26 — and the founding idea of Waiva®.

How does it work without access to the model?+

Waiva® only checks the AI's finished answer, not how it was produced. That means it works with any AI — and is already prepared for future AI systems that don't yet exist today.

What are the deployer obligations under EU AI Act Article 26?+

Art. 26 of the AI Regulation (EU 2024/1689) obligates companies that deploy AI systems to actively monitor outputs and to ensure human oversight. The Digital Omnibus (agreement of 7 May 2026, confirmed by the Council on 29 June 2026) shifted the application deadlines: high-risk AI under Annex III applies from 2 December 2027, embedded systems (Annex I) from 2 August 2028. The requirements themselves are unchanged. Waiva® addresses exactly this duty: documented human oversight, built in a structured way now instead of under time pressure.

Which industries is Waiva® particularly relevant for?+

Primarily wherever AI answers feed into decision processes: finance (advisory, credit decisions, compliance), insurance (underwriting, claims), healthcare, public administration. Waiva® works regardless of what kind of AI answers it checks — which makes it adaptable to any industry.

Is Waiva® GDPR-compliant?+

Yes. Waiva® stores no data — neither content nor user profiles. The analysis happens briefly in working memory only. Hosting on German IONOS servers in Berlin, data processing agreement in place, TLS 1.3, no data stored — technically guaranteed.