Features
What ToolChain does
A cryptographically anchored custody trail
Every check-out, check-in, transfer, repair and retirement event is written as an XRPL NFT on a private ledger node, with periodic Merkle-root anchoring that chains each anchor to its predecessor for tamper evidence.
Statutory PPE and compliance gating
Jurisdiction rule packs (South Africa's OHSA first, with GB-HSE, EU-OSH and US-OSHA in progress) drive certification tracking, competency gating, inspection cadences and expiry alerts.
Asset intelligence
A live, tenant-scoped SignalR ops feed pairs with a deterministic risk-scoring rule engine and a provenance graph for every asset in the register.
Reservations without double-booking
A PostgreSQL GiST exclusion constraint enforces non-overlapping bookings at the database level, feeding work orders and preventive-maintenance schedules tied to each asset's custody state.
Independently verifiable audit proofs
A published, byte-exact verification specification and a standalone proof-bundle verifier let an auditor, insurer or regulator check the custody trail without trusting the platform's own database.
In-house subscription billing
A Payfast-backed billing engine handles tokenised recurring charges, dunning and SARS-compliant tax invoices, built in-house because Stripe and RevenueCat don't serve South African-registered entities.
Built with
Most asset trackers are a database with a nice interface bolted on. ToolChain is built for the construction and PPE tool-crib market, with commercial equipment hire and corporate IT asset management converging on the same platform. It takes a different starting position: every custody event is anchored to a private XRPL (XRP Ledger) node as an NFT-backed record, with a Merkle root of the audit trail periodically sealed so it can be independently verified against a public ledger. The premise is simple: an auditor, insurer or regulator doesn't have to trust the operator's database, because the custody history can be checked cryptographically.
A full operations product underneath the ledger
Under the tamper-evident core sits a genuinely broad feature set: statutory PPE and compliance gating mapped to real OHS jurisdictions, a rule-engine-driven risk-scoring and provenance-graph layer with a live ops feed, and work orders and preventive-maintenance schedules. It also includes biometric and NFC holder confirmation for issue and return, overlap-safe reservations, an in-house subscription billing engine, and a public marketing site with vertical landing pages for tool-crib, equipment-hire and IT-asset audiences.
Built as clean-architecture .NET and Angular
The backend is a vertical-slice, clean-architecture .NET 10 service using MediatR for CQRS. It runs against PostgreSQL 17 with tenant-scoped row filtering, behind an embedded OpenIddict authorisation server. The frontend is an Angular 21 signals-based single-page application on CoreUI Pro, talking to the live ops feed over SignalR.
Still building, deliberately in the open
ToolChain is under active, disciplined development rather than a finished, launched product. The internal custody loop, compliance gating and ledger core are substantially built and tested, while the equipment-hire and heavier ITAM verticals are still being filled in. The team tracks exactly what's proven working versus aspirational per subsystem, against an evidence-linked implementation plan. That practice is as much a statement about how ToolChain is being built as what it does.
Have a product in mind?
From a first sketch to the App Store, we design and ship software that feels effortless. Tell us what you are making.