DB Databricks Software / SaaS Global

Elliptic

Fraud Detection · Risk Management · Security and Compliance

Elliptic's clients—compliance teams at crypto exchanges, banks, payment providers, and institutional custody platforms—face rising alert volumes and stringent regulation, and analysts must document each decision by reconciling exposure values, addresses, and transaction chronology. Applying LLMs to sanctions, terrorist-financing, and child-exploitation workflows required strong assurances against hallucination, omission, and opaque reasoning before outputs could feed formal investigations or regulator-facing reports.

2x faster resolution of high-risk screenings
40% less time to complete a Suspicious Activity Report

Solution

Elliptic extended its existing Data & Intelligence Platform with Agent Bricks to build Elliptic's copilot — an agent that describes wallet activity, highlights exposure paths, and produces neutral, report-ready risk narratives aligned to each client's risk appetite. The copilot is backed by Databricks Foundation Model APIs and Model Serving, and every interaction is captured by MLflow tracing so each prompt, intermediate step, and final narrative can be audited end-to-end. Automated evaluation pipelines score responses for correctness, relevance, and safety using LLMs-as-judges, with custom domain-specific safety scorers that distinguish describing money-laundering typologies (appropriate) from promoting harmful activity (inappropriate). Prompt and safety controls are versioned in MLflow so the team can iterate without rework.

Data flow

Wallet activity, transaction history, exposure values, screening results, and Elliptic's risk scores flow from the existing Data & Intelligence Platform into Agent Bricks, where Elliptic's copilot runs on models served via Databricks Foundation Model APIs and Model Serving. Every prompt, intermediate step, and final narrative is captured by MLflow tracing, with automated LLM-as-judge evaluation pipelines and custom domain-specific safety scorers feeding back into prompt and safety versioning. The resulting narratives are surfaced to compliance analysts at exchanges, banks, payment providers, and institutional custody clients.

Solution architecture

4 components · 3 layers
  1. Compute
    • Agent Bricks / Mosaic AI Agent runtime hosting Elliptic's copilot that produces neutral, report-ready risk narratives from wallet and transaction activity
    • Databricks Foundation Model APIs Backing model access for the copilot, future-proofed for multi-agent expansion
  2. Serving
    • Databricks Model Serving Hosts the copilot endpoint for client-facing compliance workflows
  3. Governance
    • MLflow End-to-end tracing, evaluation, versioning, and audit of every copilot interaction with custom LLM-as-judge safety scorers

Architecture clues

  • Agent Bricks for production governance, evaluation, and observability
  • Databricks Foundation Model APIs + Model Serving
  • LLM-as-judge automated evaluation with custom safety scorers
  • MLflow tracing for end-to-end lineage from prompt to narrative

Evidence from the source

40% Less time needed to complete a Suspicious Activity Report
Being able to trace and evaluate responses consistently was critical for us.
Compliance teams are resolving high-risk screenings up to 2x faster, without sacrificing accuracy or documentation quality.