8governed AI agents — each one drafts, a person decides
126segregation-of-duties controls, held as data
19ISO 20022 and SWIFT MT message types
0unbalanced journals across every load test

What's included

Key Features for Treasury, Trade and Liquidity


One platform for the desks that sit around your core — dealing, trade, payments and liquidity — with the controls regulators expect built in rather than bolted on.

Treasury Ledger & Posting Engine

A double-entry sub-ledger for every treasury, trade and payment event, balanced per currency and in base currency, with a tamper-evident audit hash chain.
  • Pair-off groups for FX, stored base amounts
  • Balance projection proved at end of day
  • Period close, multi-entity and multi-currency

FX Dealing & Confirmations

Spot and forward dealing from capture to settlement, with four-eyes booking, limits and a settlement gate that holds every deal until its confirmation matches.
  • MT300 / MT320 rendered, parsed and matched
  • Pre-settlement and settlement limit buckets
  • SSI repository under four eyes

Payments & SWIFT

Canonical ISO 20022 payments validated against the schema, a SWIFT port with FIN validation and NAK repair, and sanctions screening before anything leaves the bank.
  • pacs.008, pacs.009, pacs.002, pacs.004
  • camt.052, camt.053, camt.054, camt.056, camt.029
  • MT103, MT202, MT940, MT950

Trade Finance

Letters of credit and guarantees end to end — issuance, amendment, examination and honour — with every discrepancy cited against UCP 600 and ISBP 821.
  • MT700, MT707, MT720, MT760
  • Liens booked on the customer's core account
  • Compliance holds that refuse honour

MMQR & Domestic Payments

EMVCo QR payments from hold to authorise to capture. An unknown outcome from the switch is kept on hold and confirmed late, never guessed.
  • EMVCo TLV / CRC with scheme configuration
  • Signed switch adapter
  • Merchant wallet on the general ledger

Liquidity Management

Intraday nostro positions by the minute, a cash ladder with known flows, and the BCBS 248 intraday monitoring tools — combined with the RTGS position and the core's maturity ladder.
  • Nostro, RTGS and core ladder in one view
  • Ranked funding proposals
  • Treasurer decides; a draft payment or swap follows

EOD, MIS & Attestation

End of day and beginning of day as a leased, resumable worker that survives a restart mid-run, with AML scenario monitoring and optional blockchain attestation of the day's hash.
  • GL summary posted to the core with control totals
  • Automated three-way reconciliation
  • MIS and regulatory report definitions as data

Controls & Security

Every sensitive action runs under a segregation-of-duties policy, with MFA step-up for high and critical controls and a break-glass path that is itself audited.
  • 126 SoD controls and toxic-pair checks
  • OIDC bearer identity from the bank's IdP
  • Mapped to SWIFT CSCF v2026

Operations Console

A role-based console for dealers, trade officers, operations, compliance and the treasurer — each queue showing only what that role may act on.
  • Exception and repair queues
  • Maker-checker on every decision
  • Configurable entities, branches and calendars

AI operations plane

Eight agents. Every one drafts; a person decides.


The agents do the reading, matching and scoring that fill a treasury operations day. None of them can post, release, settle or honour — they propose, and the right human queue accepts or rejects. Every decision becomes a label that measures the model.

AG-01

Reconciliation

Proposes matches for the breaks the rules leave behind — one-to-one, bundles and splits.
Residual breaks matched: 93.9%, false matches 0
AG-02

LC Examination

Reads presented documents and drafts discrepancies, each cited against UCP 600 and ISBP 821 with its evidence.
Precision 0.51 → 0.976 at recall 0.997
AG-03

Liquidity Forecasting

Forecasts nostro balances per currency and proposes ranked top-ups or FX swaps before a shortfall lands.
Forecast error about 38% lower than a seasonal baseline
AG-04

AML Monitoring

Runs a scenario library as configuration, ranks anomalies on top, and drafts explained cases with a goAML-style report.
Scenario recall 1.00, 0.19 false hits per 1,000 subjects
AG-05

Trade-Based ML

Scores trade transactions against dual-use, port, vessel and price-benchmark lists, and triages screening alerts.
False flags 27.9% → 2.7% against rules alone
AG-06

QR Fraud Scoring

Scores every QR authorisation inside a 50 ms budget, with the rules as a floor. The model alone never declines.
Fraud recall 0.57 → 0.976 over rules alone
AG-07

Confirmation Matching

Matches near-miss confirmations — rounding, date conventions, BIC branches, aliases — and explains every difference.
Settlement waits until operations accept
AG-08

Model Governance

Validates, approves and deploys every model under four eyes, monitors drift and produces the evidence pack.
An unvalidated model cannot be deployed

Contained by design, not by policy alone

Agents run in a separate plane under a service identity that can only draft. Their database role writes only AI tables, a build gate refuses any agent import that could reach a money path, and a model-risk approver who is never the developer signs off each version. Model cards, validation sets and monitors are generated for every agent.

Agent metrics are measured on held-out synthetic evaluation data. Each Bank's model risk committee validates on its own data before production.

Value to the bank

Modernise the desks, keep the core


A core replacement takes years and puts every customer account at risk. MVTREASURY brings modern treasury, trade and liquidity capability to the teams that need it now, while the core carries on doing what it already does well.

For Treasury & Markets

See the position, act before the shortfall

  • Intraday nostro, RTGS and core maturity ladders in one position
  • Funding proposals ranked and explained, ready for the treasurer's decision
  • Deal capture to settlement with limits consumed and released automatically
  • BCBS 248 intraday liquidity metrics without a spreadsheet
For Operations

Fewer breaks, and the rest explained

  • Automated three-way reconciliation of core movements, journals and statements
  • Near-miss confirmations and reconciliation breaks proposed with reasons
  • Exception queues that route each case to the team that owns it
  • Every command carries an idempotency key, so a retry never books twice
For Risk & Compliance

Controls a supervisor can inspect

  • Segregation of duties enforced in code, not in a procedures manual
  • A tamper-evident audit chain over every sensitive action
  • AML, TBML and sanctions screening with cited, explainable outcomes
  • AI under model-risk governance, with evidence packs on demand
For Technology

Cloud-native beside the systems you have

  • Adapters for the core, SWIFT, the payment switch and screening behind stable ports
  • Distributed SQL system of record with serializable transactions
  • Helm chart for DEV, SIT, UAT and PROD; non-root, read-only pods
  • Entities, calendars, GL mapping and bands configured as data

Coexistence with core banking

Your core stays the book of record


MVTREASURY sits beside your core banking platform, not in place of it. The core keeps customer accounts and the general ledger. MVTREASURY keeps the treasury, trade and payment sub-ledgers — and the two are reconciled automatically every day.

Swipe sideways to see the full diagram →

What your core keeps

  • Customer accountsCASA balances, holds and liens stay in the core
  • General ledgerThe bank's GL remains the official book
  • Customer masterParties and accounts are referenced, never copied as a second truth
  • Your processesExisting core operations and reporting continue unchanged

What MVTREASURY adds

  • Treasury sub-ledgersFX, trade, payments, MMQR and liquidity, fully double-entry
  • Rails & messagingISO 20022, SWIFT MT, the QR switch and screening
  • ControlsSoD, four eyes, MFA step-up and an audit hash chain
  • Governed AIEight agents that propose; people decide
ADAPTER

Temenos Transact

Holds, liens, orders and reversals through IRIS, with OFS as a fallback for locks and transfers. Accounting events read from the event bridge or Kafka.
IRISOFS fallbackEvent streaming
ADAPTER

Thought Machine Vault

Postings through the Postings API; postings and balances read from the Streaming API as a Kafka consumer, with offsets committed only after ingest.
Postings APIStreaming APIConsumer-only
NATIVE · IN DEFINITION

MVCORE

The Moneyverse core, on the same port as every other adapter. The interface is being agreed with the MVCORE team; the requirements are already specified.
Same CorePortNative events
ANY CORE

Your platform

Any core that offers idempotent holds, liens, debits and credits by client reference can be added as a new adapter. The core can be chosen per legal entity.
Per-entity selectionSigned HMAC push

Five coexistence guarantees


01

No core call inside a database transaction

Every money call to the core becomes an outbox command, delivered after the business transaction commits. A slow or unavailable core can never hold a lock in MVTREASURY — a build gate fails if any code tries.

02

Every command is safe to retry

Each call carries MVTREASURY's own idempotency key as the core's client reference, so a retry after a timeout finds the original booking rather than making a second one. A definitive refusal opens an exception case for operations.

03

Accounts and GL mapped as data

Internal accounts and GL codes map to the core's own identifiers per legal entity, with templates by currency. An unmapped internal account stops with a clear configuration error instead of posting to the wrong place.

04

Core events confirm; they never double

Movements come back by event bridge, file topic, Kafka consumer or a signed push from your middleware. An event confirms the movement MVTREASURY already recorded — it does not add a second one — and a crash only causes a re-read.

05

Proof at the end of every day

The day's journals are summarised per GL code and currency and posted to the core with entry counts, debit and credit totals and a SHA-256 digest, which the core echoes back. A three-way reconciliation then matches core movements, journals and statements, and names every break.

How it works

From onboarding to daily proof


Connect

Select the core adapter per legal entity, load the account and GL mapping, and connect SWIFT, the payment switch and screening. Each live rail is switched on only when the bank hands it over; until then it runs against a faithful simulator.

Operate

Desks deal, issue, pay and fund in MVTREASURY. Every event is posted to its own double-entry ledger, and every movement on a customer account goes to the core through the one idempotent gateway, under four eyes where policy requires it.

Reconcile

Core events stream back and confirm each movement. At end of day the GL summary is posted with control totals, and the three-way reconciliation proves that the core, the journals and the statements agree.

Standards & deployment

Built for regulated financial infrastructure


  • ISO 20022 pacs · camt
  • SWIFT MT 1xx · 2xx · 3xx · 7xx · 9xx
  • SWIFT CSCF v2026 mapping
  • BCBS 248 intraday liquidity
  • UCP 600 · ISBP 821
  • EMVCo QR
  • OIDC with MFA step-up
  • CockroachDB serializable SQL
  • Kubernetes · Helm
  • Blockchain attestation