InvenioHalo Discuss a pilot

Private preview · Pilot cohort open

Every request, owned until resolved.

A guest asks for something on a terrace, in a lounge or in a private room. Too often nobody owns that moment: the guest does not know they were seen, the floor does not know who is going, and the manager hears about it afterwards. HALO gives every request an owner, a clock and a verified end, on a record the operation can audit.

Premium hospitality worldwide Every venue, every setting No integrations required

The problem

A request nobody owns is a request that disappears.

Nothing in a busy service is neutral about time. The interval between a guest needing something and the operation finishing it is where reputation, recovery and revenue are decided, and in most venues that interval is invisible.

01

The guest

Asks twice, or stops asking. They never learn whether the first attempt registered, so they read silence as indifference.

02

The floor

Two people go, or nobody does. Without an owner, willingness is not the same thing as coverage.

03

The manager

Learns late, and only about the failures loud enough to reach them. There is no record of the ones that quietly resolved themselves.

04

The operator

Cannot tell a service problem from a staffing problem, because nothing counted the interval in the first place.

HALO's premise is simple and absolute: no request without an owner, a clock and a verified end.

Category

What HALO is not.

The fastest way to understand a new category is to hear what it refuses to be. Each of these was a real design decision, and each one costs us something.

Not a waiter-call button

A button raises noise. HALO raises an accountable object: owner, clock, escalation path, verified end.

Not staff surveillance

Workload indicators stay private, location stays at zone level, and no minute-level productivity score is produced or published by default.

Not a POS or ordering system

HALO summons people. It does not take orders and it does not take payment. It is designed to run with no integrations on day one.

Not an AI prediction layer

Routing is deterministic and explained: the chosen person, the alternatives and the rejection reasons are all recorded. No model is guessing about your floor.

See it work

One request, from the moment it is raised to the moment it is verified.

Scroll, and the drawing makes it. Aster House is a synthetic demonstration venue: a terrace the pass cannot see into, two guests, one waiter and ninety seconds that either get counted or do not. The lifecycle rules it exercises are the ones that are actually built.

One guest request, drawn from press to verified end A pencil drawing of a restaurant terrace. Two guests sit at a table; one presses a small disc, which sends a signal across the floor plan to a waiter's watch at the pass. The waiter walks back to the table, and the request closes with a verified seal. A rule along the bottom marks the interval: created, routed, owned, accepted, arrived, verified at one minute forty-two. TERRACE MAIN DINING THE PASS FIG. 01 · ONE REQUEST, END TO END ASTER HOUSE · SYNTHETIC DEMONSTRATION VENUE · NOT A CUSTOMER NO SIGHTLINE a need becomes a fact T09 · BILL your section, free now one next action, not a queue IF THE ACCEPT BUDGET LAPSES protocol 1.7 arms, and someone else is sent closed by evidence from outside the work t+0s REQUEST.CREATED t+4s ROUTED t+12s OWNED t+26s ACCEPTED t+68s ARRIVED t+1:42 VERIFIED · CLOSED

The room exists before the request does. A terrace the pass cannot see into.

A guest presses. A need stops being a mood and becomes a fact on a ledger.

Routing runs, and keeps its reasons. One owner, the alternatives, and why they were passed over.

It lands on one wrist as one next action, with the reason attached.

Somebody walks. The clock is still running, and everyone can see it.

Closed by the guest, not by the person who did the work. Ninety-nine seconds, on the record.

Aster House · synthetic venue · not a screenshot

Four promises

One system, four different obligations.

The same request is a different promise depending on who is holding it. HALO is only useful if all four are true at once.

Guest

You will know you were seen.

The guest surface confirms the request the moment it exists, names the state it is in, and closes only when the guest, or an integration event, agrees it is finished.

Guest view

  • Seen · 0:00
  • On the way · Sofia
  • Complete · confirm
Illustration of intent

Staff

One next action, and the reason for it.

Staff receive a single next-best action rather than a queue to triage, with the reason it was routed to them. Declines are attributed to protocols, not to people, and break protection is a hard filter rather than a courtesy.

Staff view

  • Table 09 · Bill
  • Because: your section, free now
  • Accept · Arrived · Resolved
Illustration of intent

Manager

You see the interval while it still matters.

Zone load, requests past their accept budget, armed recovery protocols and the full event chain behind any outcome. Intervention becomes a choice rather than a scramble, because the clock is visible before the complaint arrives.

Manager view

  • Terrace · 1 past accept budget
  • Protocol 1.7 armed
  • Recovery routed · rd_8f24
Illustration of intent

Operator

Evidence you can audit, not a dashboard you must trust.

Every published number carries its formula, its source events, its exclusions and its confidence. The ledger is append-only, so a result from week six can still be reconstructed months later.

Operator view

  • Missed-request rate · formula shown
  • Source events · ledger
  • Export · CSV / API
Illustration of intent

The evidence contract

How a pilot gets proved.

There are no customers to quote and no results to show. What can be committed to now is the method, frozen before the measurement window rather than chosen after it.

Metrics are frozen before go-live

Definitions, formulas, exclusions and dayparts are signed before the measurement window opens. Amendments are versioned and signed; they never quietly replace the original.

Verification comes from outside the work

A request closes on the guest's confirmation or an integration event, never on the say-so of the person who performed it.

No synthetic data in an evidence report

Demonstration venues like Aster House exist to explain the system. They never appear in a pilot result, and every figure states its source events.

Negative findings are reported in full

If the frozen criteria are not met, that is the finding and you receive it complete, with the limitations and confidence stated. A pilot that proves HALO is not worth buying is a successful pilot.

Signed before the window opens, not after the numbers arrive

Where HALO fits

Wherever service is promised, HALO keeps the record.

HALO is not built for one kind of room. Property, then zone, then service point: the same model describes a forty-cover restaurant, a resort, a members' club or a stadium suite. If a guest can ask for something and a team has to deliver it, the record applies.

Pilot cohort · open to every premium venue

Hospitality in every form it takes

Pilots are open to any operator who takes service seriously enough to want it measured. The venue type does not decide eligibility. The standard of service does.

  • Restaurants
  • Hotels and resorts
  • Bars and lounges
  • Members' clubs
  • Beach clubs
  • Rooftops and terraces
  • Food halls
  • Private events
  • Function rooms

Same record · wider world

Anywhere a promise of service is made

The problem is not unique to restaurants and hotels. Wherever people are served at a premium, requests go unowned and nobody keeps the record. Operators in these settings are welcome to open a conversation.

  • Casinos
  • Cruise and ferry
  • Stadium premium service
  • Airport and transport lounges
  • Senior living
  • Private aviation
  • Residences and estates

What is real today

Built, being built, and deliberately absent.

HALO is in private preview. The lifecycle rules the drawing demonstrates are real and tested; the surfaces staff and guests will hold are in build. Nothing below is aspirational.

Built and tested

  • Request lifecycle state machine
  • Actor guards and escalation cap
  • Rejection matrix
  • Tenant isolation, enforced at the database

In build

  • Guest, staff and manager surfaces
  • Ledger persistence and APIs
  • The routing engine
  • Signed guest sessions and retention enforcement

Not built, not claimed

  • Integrations of any kind
  • AI, prediction or benchmark networks
  • Hardware
  • Customers and measured results

Read the two-page pilot brief

The paid pilot

One venue. Ninety days. A frozen metric contract.

You are buying evidence about your own service intervals, and the honest answer either way. Free pilots are not offered: they buy politeness rather than evidence.

01 Two weeks

Observed baseline

Manual sampling on your floor, plus whatever data already exists, each with a data-quality score. The metric contract is frozen and signed at the end of this step.

02 Six weeks

Frozen measurement window

HALO runs live in one venue with weekly operator review. Nothing in the metric definitions moves during this window; matched dayparts are compared against the baseline.

03 The remainder

Decision

You receive the full result with limitations and confidence stated, against written success criteria and a conversion price agreed before go-live.

Shape
One-time setup and training fee plus a flat monthly per-venue fee. Never per request, never per seat. Quoted after a scoping conversation.
Integrations
None required at go-live. Honest CSV and API export from day one.
Support
On-site setup and staff training, weekly operator review, and a direct line to the person building it.
Exit
Written success criteria and a pre-agreed conversion price in the agreement. If the criteria are not met, you receive that finding in full.

Start a conversation

Tell us where requests go missing.

Five fields, two of them optional. We reply personally, usually within two working days.

Not ready to talk?

Read the two-page pilot brief: the engagement, the evidence contract and the build status on one printable page.

Read the pilot brief

Zones where requests go missing (optional)

We use these details only to respond to your enquiry and assess pilot fit. Read the privacy notice

Who you would be working with

Ahmed Rahim Khan

HALO is being built by one accountable person, not a sales organisation. A pilot means direct access: setup and staff training on site, weekly review with the operator, and the same person answering the phone when something breaks. Pilots are run on site wherever the venue is, and travel is priced into the engagement rather than bolted on. Invenio Protocols Limited is the legal owner of the product, contracts and any pilot evidence; Invenio HALO is the product brand.

Role
Founder, Invenio Protocols Limited
Legal owner
Invenio Protocols Limited
Based in
Dublin, working internationally
Direct contact
ahmed@invenioprotocols.com