Where your AI actually runs, who can reach it, what we will never do with it, and how you walk away with everything if you decide to.
Most AI vendors ask you to trust a privacy policy. We would rather show you the architecture. Nearly everything we build is self-hosted, which means the models run on computing hardware under your control and your documents, drawings, quotations, customer records and support history never leave that boundary. This page sets out exactly how that works.
We do not train, fine-tune or evaluate any model on your content. Not ours, not anyone else’s.
No OpenAI, Anthropic or Google API calls with your content — unless you specifically ask for a hybrid design and sign it off in writing.
Whether you own the hardware or we operate it for you, it is single-tenant. Never shared, pooled or resold.
Model weights, configuration, prompts, data. No hostage-taking, no proprietary formats.
Every Ascentis system is deployed in one of three ways. The software and the assurances are identical across all three; what changes is who owns the metal and where it sits.
| Your own hardware | Ascentis Private Compute | Ascentis Hosted in UK/EU | |
|---|---|---|---|
| Who owns the machine | You | Ascentis, dedicated to you | Ascentis |
| Who else uses it | Nobody | Single-tenant, or shared with other Ascentis-built projects — set in the contract | Shared platform, logical isolation per client |
| Where it sits | Your premises | Your country — UK or France | United Kingdom or EU |
| Internet required | No — can be air-gapped | Encrypted link only | Yes |
| Typical fit | Defence, NDA-heavy and regulated work | SMEs wanting full data control without an IT estate | Smaller teams and evaluation |
| Indicative cost | From £4,855 ex VAT, one-off | From £200 per month | Subscription |
Ascentis Private Compute is not a GPU cloud and we do not rent capacity. We invest in the machine, install and operate it, and run the system we built for you on it. It never takes on workloads we did not build.
How isolated is it? That is a contract decision, and we would rather be straight about it than overpromise. Where the work is time-sensitive, used by many people at once, or falls under defence or regulated requirements, the machine is single-tenant — yours alone. Where the workload is light and periodic — a market intelligence digest that runs for three hours on a Wednesday night, say — it makes no commercial sense for a machine to idle for the other 165 hours, so the hardware may be shared across a small number of projects we have built and operate, with logical isolation between them. Which of the two applies to you is agreed before we start and written into the contract. If you want the detail on what owning the hardware yourself actually involves, our 2026 build, benchmark and cost guide shows the real numbers.
Residency is a property of the arrangement, not an add-on you pay extra for. A UK client’s machine sits in the United Kingdom. A French client’s machine sits in France. There is no cross-border replication, no failover to another region, and no analytics pipeline quietly shipping telemetry somewhere else.
This matters more than it used to. Under UK GDPR and the EU GDPR you remain the controller of your data and you are accountable for where it goes. Under the EU AI Act, transparency and human oversight obligations sit with the deployer. An architecture where your content never leaves your own hardware, in your own country, is the simplest answer to both.
Le système fonctionne sur une machine physique située en France, dédiée à votre entreprise, sans réplication hors du territoire.
We are precise about the difference between holding a certification and aligning to a standard, because plenty of vendors are not.
| Standard | Our position |
|---|---|
| Cyber Essentials | Certified. The UK government-backed scheme covering the five technical controls. |
| JSP 936 (Dependable AI in Defence) | Aligned. Our delivery approach follows its principles for dependable, accountable AI. |
| DEFCON 658 (Cyber, MOD supply chain) | Aligned. Relevant to defence and defence-adjacent supply chain work. |
| ISO/IEC 27001 | Aligned to the controls across the stack. We are not certified to ISO 27001 and we do not claim to be. |
| UK GDPR and EU GDPR | Data stays on infrastructure you control; deletion cascades on request. |
| EU AI Act | Transparent AI, human oversight, and source citation end to end. |
Our systems are designed to be checkable. Answers cite their sources, so a claim can always be traced back to the document it came from. Where output is customer-facing, a human approves it before it goes out. Where a system makes a recommendation, the reasoning is visible rather than buried in a score.
This is not decoration. It is the difference between an AI system your team trusts after six months and one they quietly stop using.
An AI system that holds you hostage is not an asset, it is a liability with a subscription. So the exit is written into how we build:
On request we delete your data with a full cascade across indexes, caches and backups, and confirm when it is done.
Access is limited to the engineers working on your system, for the purpose of building and supporting it. On an air-gapped deployment, we have no route in at all unless you give us one. Ask us for the specifics of your deployment and we will put them in writing.
No. Not for you, not for another client, not for a general model. Your content is used to answer your questions and nothing else.
It is usually the reason clients come to us. Regulated, NDA-heavy and defence-adjacent work is precisely where a self-hosted system beats a cloud subscription, because you can say exactly where the data is and prove it. We are Cyber Essentials certified and align to JSP 936 and DEFCON 658.
For systems we operate, hardware failure is our problem, not yours — that is a large part of what Ascentis Private Compute is for. For systems on your own hardware, we agree the support arrangement up front so nobody is guessing on the day it matters.
It depends on the workload and it is agreed in the contract. Single-tenant is standard where the work is time-sensitive, used by many people at once, or subject to defence or regulatory requirements. For light periodic workloads the hardware may be shared across a small number of projects we have built and operate, with logical isolation between them. Capacity is never resold to third parties.
Yes. The stack is open-source and inspectable, answers are source-cited, and we will walk your IT or compliance people through the architecture. We would rather have that conversation early than in a procurement review.
Related reading: Off-the-shelf AI vs bespoke AI · Self-hosted AI vs cloud AI · AI ROI calculator
If you have a security questionnaire, send it. If you have a policy that says AI tools are banned, we have probably read one like it and can tell you where a self-hosted system sits against it.
Get in touch · Read the build and cost guide · See what we have built