Agents by industry
SECURITY & TRUST

Your data never trains a model. Not theirs, not ours.

The hub runs inside your own cloud, under your keys. The only thing that ever leaves is a model request, and no one keeps it to train on.

YOUR CLOUD · YOUR KEYSMODELNO STORING · NO TRAININGTHE HUBONLY A MODEL REQUEST LEAVES
THE ACCESS MODEL

At every stage, nothing leaves.

The only thing that ever crosses your perimeter is a single model request. Your data, keys, and logs never do. Here is the guarantee at each stage.

zero retention

Your data trains no model, ever.

Your prompts and outputs train no model, the provider's or ours, and nothing is stored, not even briefly.

cloud · on-prem · air-gapped

Your cloud, or your own servers.

Runs in your own cloud account or on your own servers, all the way to fully air-gapped. We don't run your infrastructure, and we don't copy your data out of it.

writes granted per agent

Read-only by default.

Every connector reads. Writes are granted agent by agent, and anything that acts on your systems routes through a human approval step first.

your secret store

Yours, never ours.

Credentials stay in your own secret store. Engineer access on our side is named, time-bound, MFA-protected, and revoked at handover.

your logging stack

Logged end to end.

Every agent action and every engineer action lands in your own logging stack. Access is role-based and scoped per user.

one command revokes

Yours to keep. No lock-in.

At handover the hub, the logic, and the runbooks are yours. It keeps running if we walk away, and one command removes our access for good.

Agent outputs are reviewed by a person before any decision that carries real consequences.

WHERE IT RUNS

Your cloud, your own servers, or fully air-gapped.

The hub is software you own, not a service you rent, so it runs wherever you run software. Pick the boundary you need. The agents are the same in all three.

MODE 01 · DEFAULT

Your cloud

Deployed into your own AWS, GCP, or Azure account, inside your VPC. Model calls go to your AI provider on a zero-retention contract. Right for most teams.

What leaves

One zero-retention model request leaves your perimeter.

MODE 02 · ON-PREM

Your own servers

The same hub, installed in your data center or private servers. Nothing in it assumes a public cloud. If your team can run Python, it runs there.

What leaves

One zero-retention model request leaves your network.

MODE 03 · AIR-GAPPED

Fully disconnected

On-prem, plus a model you host yourself inside your network. Nothing crosses the boundary. Zero external dependency.

What leaves

Nothing leaves your network. At all.

The runtime is our own code: MIT-licensed, pip-installable, not hosted SaaS. That is why we can meet any of these boundaries without re-architecting. Air-gapped mode swaps the frontier model for one you host, and we help you weigh that trade-off.

WHY YOU CAN AUDIT THIS YOURSELF

The runtime is open source.

The hubzoid package is MIT-licensed and public: your team can read every line that runs against your data. What you audit is what ships.

$ pip install hubzoidView on GitHub
DEPLOY · YOUR COMPANY, RUNNING ON AGENTS IT OWNS

Your work, run by agents you own.