Skip to content
GridNinja

AI Data Center Virtual Capacity Control Plane

The platform for runtime-assured virtual capacity

GridNinja turns site constraints into proof-adjusted virtual capacity through Shadow Mode, runtime assurance, dispatch envelopes, and operator-readable evidence.

Infrastructure X-Ray

Physical constraints become digital proof objects.

GridNinja evaluates power, cooling, storage, workload, policy, and telemetry trust as inspectable layers before authority can expand.

  • Power and reserve limits
  • Thermal and water limits
  • Workload and SLA limits
  • Telemetry trust and policy

Product modules

One control plane, multiple operator-ready proof surfaces

Each module exists to make extra MW usable, explainable, and auditable before autonomy expands.

Virtual Capacity Proof Engine

Quantifies proof-adjusted capacity in Shadow Mode before any bounded autonomy is considered.

AI Data Center Load Passport

Summarizes usable capacity, binding constraints, data confidence, policy posture, and proof artifacts in one operator-legible output.

Bridge Power Orchestrator

Maps generators, batteries, UPS reserve, cooling, and workload posture into a dispatch envelope that protects resilience margin.

Utility Evidence Packet

Publishes flexible MW, ramp limits, reconnection posture, and no-proof gaps without implying utility approval or replacing studies.

Water-Aware Dispatch

Treats water and thermal posture as capacity constraints, reported as scenario evidence rather than broad sustainability claims.

Product boundary

What the virtual capacity control plane does and does not do

  • Turns constrained AI infrastructure into safe, usable, auditable capacity.
  • Runs Shadow Mode before bounded autonomy.
  • Exports Load Passports, ledgers, RTA traces, and no-proof registers.
  • Keeps operators, declared policy, and runtime assurance at the boundary.

Platform architecture

Telemetry to proof, in one bounded chain

The platform is structured so the same path that ranks and gates action bundles also generates audit-ready evidence.

Telemetry AdaptersSite ModelBundle EngineRTA GateAuthority BoundaryProof System

Telemetry Adapters

Read-only integration across mixed power, cooling, DER, and workload telemetry.

Site Model

Physics-backed feasibility with learned residuals for site-specific behavior.

Bundle Engine

Constructs candidate bundles across workloads, cooling, bridge assets, and reserves.

RTA Gate

Allow / repair / reject / no-proof with visible margins and fallback logic.

Authority Boundary

Operators and declared site policy remain final authority before any bounded control.

Proof System

Structured logs, replay, Load Passports, accepted-headroom ledgers, and audit trails.

Proof chain

Proposal to proof pack with authority boundaries visible

proof_root: 8f4c...91a

Can do

Rank candidate workload, cooling, and bridge-power bundles.

Cannot do

Cannot approve site actions or mutate authority.

Authority boundary

Proof before autonomy means the system can say no

GridNinja can propose and verify candidate actions, but live authority stays inside declared site policy, deterministic checks, runtime assurance, and operator review.

Read-only Shadow Mode first
No write credentials in first deployment posture
No command VLAN requirement for proof generation
No hidden actuation path from ML, frontend state, or fleet software
Operator policy and runtime assurance remain the approval boundary

Runtime Assurance

Every candidate resolves to allow, repair, reject, or no-proof.

Deterministic verification checks the active dispatch envelope before a receipt and replayable proof record are produced.

  • Proposal
  • Solver
  • Runtime assurance
  • Receipt
  • Replay
  • Proof

Dispatch Envelope

Inspect the runtime-assured capacity aperture

See how GridNinja turns requested virtual capacity into an allow / repair / reject / no-proof dispatch envelope with binding constraints, evidence artifacts, and read-only Shadow Mode proof.

AI Data Center Load Passport

One inspectable identity for proof-adjusted capacity.

The Load Passport binds accepted capacity to ramp limits, reserve floors, freshness, no-proof gaps, and accepted-headroom evidence.

  • Declared operating policy
  • Binding constraints and margins
  • Evidence-chain status
  • Versioned proof root

Constraint braid

Capacity is accepted only after every binding constraint is visible

The braid links power, cooling, storage, workloads, and telemetry trust to the runtime assurance outcome so virtual capacity is not treated as a generic optimizer score.

Constraint braid

Constraints converge before capacity is accepted

REPAIR

Binding constraint

Transformer T2 ramp envelope

Proof object

Capacity Waterfall row 002

Accepted posture

Repair to declared ramp limit before acceptance

source

EPMS-A + PCC telemetry

constraint

T2_RAMP_LIMIT

proof_row

waterfall.power.row_002

Safety boundary

Advisory intelligence stops before authority

proposal layer

Advisory only

advisory-to-authority boundary

Solver + RTA gate

proof output

Receipt or no-proof row

ML / UI / fleet proposal

Solver / RTA / receipts / proof

REPAIR

Clipped to +1.1 MW for 30 minutes before it can be accepted.

T+00:18

solid verified evidence after repair: reserve floor remains intact

Runtime assurance is the approval boundary, not the proposal layer.

Fleet evidence

Fleet views aggregate evidence; local authority still gates action

FleetOS can compare proof posture across sites, but site policy, operators, and runtime assurance remain the approval boundary.

Fleet evidence

Fleet comparison without fleet-side actuation authority.

FleetOS aggregates signed site envelopes, proof roots, accepted headroom, and no-proof gaps while local policy remains the authority boundary.

  • Signed site envelopes
  • Accepted-headroom ledgers
  • No-proof registers
  • Local authority preserved

Artifact surfaces

Proof objects are part of the platform, not presentation polish

Each artifact exists so operators and stakeholders can inspect capacity claims, refusal logic, and evidence quality without treating a dashboard as authority.

Operators, hyperscalers, investors

AI Data Center Load Passport

A site-specific capacity identity that summarizes proof-adjusted virtual capacity, binding constraints, freshness posture, and declared operating policy.

Illustrative sample · evidence chain complete

Executives, operators, reviewers

Capacity Waterfall

A transparent reduction from nominal headroom to safe, usable, auditable capacity after electrical, reserve, thermal, workload, and telemetry checks.

Illustrative sample · evidence chain complete

Operators, auditors, fleet teams

Accepted-Headroom Ledger

A time-indexed record of accepted capacity states, rejected actions, no-proof intervals, and the proof root behind each decision.

Illustrative sample · evidence chain complete

Facilities, BESS/UPS partners

Reserve-Floor Report

A resilience-first view of UPS, BESS, and bridge-power margins so flexibility does not spend emergency posture silently.

Operators, CISOs, program owners

No-Proof Gap Register

A remediation list for missing telemetry, incomplete topology, stale policy, or weak evidence that prevents safe approval.

Utilities, EMCs, partners

Utility Evidence Packet

A planning-facing summary of flexible MW, ramp limits, reconnection envelope, confidence posture, and exceptions.

Capacity Audit

The same chain that evaluates an action also produces the proof to trust it

GridNinja is not a generic optimizer. The platform is designed so the same telemetry, topology, policy, and runtime assurance path creates the evidence needed to inspect, refuse, audit, or operationalize capacity.