CYS-BOTOT
AI-powered OT cybersecurity compliance assistant. Pay with XRP to unlock 85-question IEC 62443 assessment. Get instant SL0 to SL4 score. Mint your compliance certificate as an NFT on XRPL.
Project Information
At a Glance
AI-powered OT cybersecurity compliance assistant. Pay with XRP to unlock 85-question IEC 62443 assessment. Get instant SL0 to SL4 score. Mint your compliance certificate as an NFT on XRPL.
Description
CYS-BOTOT is an AI-powered compliance assistant that helps industrial manufacturers including factories, energy plants, and robotics makers assess whether their machines comply with IEC 62443 and EU Regulation 2023/1230, the new EU Machinery Regulation that mandates cybersecurity for all machines sold in Europe by 2027.
THE PROBLEM OT cybersecurity compliance today is slow (4 to 8 weeks), expensive (500 euros per hour consultants), unverifiable (PDF reports can be faked), and poorly understood. Yet EU 2023/1230 makes it legally mandatory. No compliance means no EU market access for over 500000 manufacturers.
THE SOLUTION CYS-BOTOT solves this with a complete AI-powered workflow.
PAY WITH XRPL: User pays 10 XRP on XRPL Testnet to unlock a session. Real on-chain transaction with SourceTag for team attribution.
AI ASSESSMENT: The bot asks 85 structured questions across 14 sections covering IEC 62443 FR1 through FR7 including Identification, Access Control, Integrity, Confidentiality, Data Flow, Event Detection, and Availability. Also covers Functional Safety SIL levels and EU Regulation 2023/1230 specific requirements.
INSTANT SCORE: After answering, the user receives an immediate compliance score from 0 to 100 percent, a Security Level estimate from SL0 through SL4, a full breakdown by FR1 through FR7, and a styled downloadable PDF report.
RAG POWERED Q AND A: At any point users can ask free-form questions like what does Article 10 of EU 2023/1230 require. The AI answers using Retrieval-Augmented Generation over actual regulatory documents with zero hallucination and citations included.
DOCUMENT ANALYSIS: Users upload their own security policies or technical manuals. The AI compares them against the regulatory backbone and identifies gaps against IEC 62443 and EU 2023/1230.
MINT NFT CERTIFICATE: After assessment, the compliance score is minted as an NFTokenMint transaction on XRPL Testnet. The NFT URI encodes the score, Security Level, and timestamp permanently and immutably on the blockchain. Regulators and insurers can verify it on-chain without trusting any third party.
WHY XRPL IS ESSENTIAL AND NOT A BOLT ON Stripe gives a receipt. XRPL gives immutable proof. The NFT certificate is the core value proposition, a verifiable compliance record that cannot be faked, tampered with, or lost. Every user generates 2 XRPL transactions (payment and NFT mint), recurring annually per machine.
IMPACT Over 500000 EU manufacturers must comply by 2027 and the demand is legal not optional. CYS-BOTOT replaces 500 euro per hour auditors with a less than 1 hour AI assessment. It protects critical infrastructure including energy grids, water systems, and factories. It creates a blockchain-verified compliance ecosystem for regulators and insurers. Each annual re-assessment generates recurring trackable on-chain transaction volume.
Technical Details
Stack: Plain HTML CSS JS frontend connected to Cheshire Cat AI running in Docker, Qdrant Vector DB for memory, and Regolo.ai LLM using Llama 3.3 70B hosted in EU data centers with full GDPR compliance.
4 Cheshire Cat plugins with priority hooks: cys botot router at priority 999 runs the 85 question state machine, ot compliance at priority 800 handles OT keyword detection, otfile compliance at priority 800 manages document gap analysis and SL scoring, regulatory guard at priority 500 enforces strict RAG-only responses.
XRPL: Payment transaction with SourceTag 2026040000 unlocks each session. NFTokenMint transaction after assessment completion encodes score, SL level, and timestamp in the URI field. account nfts RPC retrieves minted certificates for Dashboard display. All transactions run on XRPL Testnet L1.
RAG pipeline: IEC 62443 and EU 2023/1230 documents are chunked and embedded into Qdrant. The model answers only from retrieved document chunks with citations.
Team
2Rahmet Abdella Mohammed
Abel Ataklti Belay
Hackathon
HACK THE BLOCK 2026 Paris Blockchain Week XRPL Hackathon
Duration
Apr 11, 6:30 AM - Apr 12, 6:00 PM UTC