PolicyMesh helps teams prevent non-compliant data movement across services and regions. Define policies in YAML, classify sensitive data with AI, check commits through GitHub Actions, enforce ALLOW/DENY decisions at runtime, and maintain tamper-evident audit lineage. Built for security, DevOps, and compliance teams.
I built PolicyMesh to solve a problem I kept seeing in modern microservice architectures: data can move across regions without anyone realizing it violates a governance policy.
With PolicyMesh, a rule like “EU PII must stay in the EU” is defined once in YAML and used across the lifecycle.
A commit can be checked before merge, GitHub Actions results can be verified, runtime transfers can be ALLOWED or DENIED, and decisions can be tracked through cryptographic lineage.
I built and deployed the full stack solo for DoraHacks 2.0 — React, Spring Boot, Python/FastAPI, GitHub integration, MySQL, Redis, Kafka and Docker.
I’d love to get feedback on the product, the idea, and especially the real-world use cases.