Use cases · teams and consortia

What people run Citadel for, and where we partner.

utxo AG · Zug, Switzerland Looking for: one work package

The short version

For a team. Citadel gathers the records you already produce, code, tickets, documents, coding sessions, and keeps them in one place where each item is traceable to its source, only visible to the people allowed to see it, and logged every time it is read or changed. You and your agents ask it questions instead of asking each other the same ones again.

For a consortium. That same system is what utxo AG brings to an EU project, as a partner running one work package. We are a Swiss company, and Switzerland is part of the Digital Europe Programme, so we count toward your minimum number of countries rather than sitting outside it. We apply for Swiss national co-funding toward our own share, and we scope the work package with you rather than off a price list.

Use cases

Four things teams run it for

None of these need anyone to file anything. The capture already happened while people were working.

The first two weeks of a new engineer

Why is it built this way, what was tried before, who decided. A new joiner asks the vault and gets an answer with the commit, issue, or decision record behind it, instead of interrupting the three people who remember.

onboarding without a tax on the team

Agents that know your codebase

Claude Code, Cursor, or your own agent connects over MCP and answers from your team's memory under your seat and your read scope. The agent stops guessing at context it was never given.

MCP · same seat, same isolation

One question across every tool

The answer to "what happened with X" is usually split across a commit, a ticket, a document, and a coding session nobody wrote down. One search reads all of them and tells you which memory answered.

code · tickets · docs · sessions

Evidence you can hand to someone else

Every retrieved item carries a content fingerprint and points back at where it came from, and every read and write is logged. When a report or a review needs proof, it is already assembled.

source linked · audited

The rest of this page is the same system offered to EU consortia as a work-package partner. If you are here as a team rather than a coordinator, the home page and the live status are the shorter read.

Partnering · where we fit

Two jobs consortia give us

The software is the same in both. Only what we connect it to changes.

Proving compliance without the paper chase

The evidence a report needs is scattered across a dozen systems, and by the time it is collected it is out of date. We keep it gathered continuously, each item traceable back to where it came from, so a report can be produced, and defended, from records rather than recollection.

gather → check → report

Shared knowledge across partner organisations

Five organisations over 24 months usually run their knowledge on shared drives and email. We give each partner a private space and the consortium a shared one, with clear rules for what moves between them and a log of who saw what.

private per partner · shared per project
What we can and can't do

Three honest categories

Rather than one long capability list, here is the only distinction that matters to you when you are assembling a consortium: what already works, what we would build with project funding, and what you need somebody else for.

What we don't claim

Where we would fail a technical review

Read this before you believe the rest

Partner profiles list capabilities and stop. These are the gaps, checked against the live system rather than copied from our own documentation.

  • Items are fingerprinted, but not yet traceable. We can prove a record hasn't changed; we cannot yet show you, on every record, exactly which document it came from. That is the single biggest thing a project would fund, and we would rather fund it than claim it.
  • Disagreement detection is shallow. Today it compares document titles. Comparing the actual claims is designed and specified, but not built.
  • We are proven at team scale, not national scale. The system runs daily for a working team. Handling a country's reporting volume is real project work, and we scope it as such.
Draft work package

Written so you can lift it and edit

A coordinator assembling a proposal under time pressure needs text, not a brochure. Six tasks across 24 months, all negotiable against the structure you already have.

We depend on other partners for data capture from the pilot's systems, privacy techniques, identity and trust services, and the industry vocabulary. We provide the store everything lands in, the way to query it, and the export that leaves it.

The ask

One work package, scoped to your call

Effort and cost depend on the call, the pilot systems, and which partners cover what around us. We work those out with you rather than publishing a figure that would be wrong for your project. Send us the call and the gap, and we come back with a costed work package written against your structure.

Check us

Verify before you commit to anything

The page you are reading is served by the system it describes. Nothing here needs to be taken on trust.

The source code

github.com/masumi-network/Citadel is Apache-2.0, with the full commit and test history, and the written record of every significant design decision.

read every line

The running system

Its own live status report: current numbers, what shipped when, and what is planned, generated by the system rather than written about it.

served by the node
Talk to us

Tell us the call and the gap

Send the call identifier, the topic, and the piece you need covered. We reply with a work package written against your structure rather than ours, usually within two working days.