Skip to main content
Security & privacy

Your data stays yours

We build AI that runs on your infrastructure — not someone else's cloud. Here is how we handle security, privacy, and your data.

How we protect your data

The same principles that shape our work, written down.

Runs on your infrastructure

We design and deploy AI systems inside your environment — on-premises or in your own cloud. Your data and models stay under your control and do not leave it.

We never train on your data

Your data is used only to build the system you hired us to build. We do not use it to train models for other clients, and we do not sell or share it.

Private by default

By default we use private or local models, so your data is not sent to third-party AI providers like OpenAI or Anthropic. When a hosted model is the right call, we tell you exactly what would leave your environment first.

GDPR and data processing

We act as a data processor under your instructions and follow GDPR principles: data minimization, purpose limitation, and your right to access or delete. We sign a Data Processing Agreement before handling personal data.

Confidentiality and access

We sign an NDA before every engagement. Access to your systems and data is on a need-to-know basis, limited to the people working on your project.

Minimal third parties

We keep sub-processors to a minimum and share the full list on request. Because we favour private and local models, most engagements involve no third-party AI processing at all.

Retention and deletion

We hold your data only for as long as the engagement requires. At the end of a project we delete it or hand it back, as agreed.

Systems you can audit

We build AI you can understand, monitor, and maintain — not black boxes. You get the code, the models, and the documentation to run and check it yourself.

What a private deployment looks like

Your data, your models, your environment.

1

Your environment

Models run on your servers or your own cloud account — never ours.

2

Your data stays put

Training and inference happen where your data already lives. Nothing is copied out.

3

You own it

We hand over the code, models, and documentation. You can run and change it without us.

Have a security question?

We are happy to walk through our approach, sign a DPA or NDA, or complete a security questionnaire. Reach us and we will respond quickly.