Security · Confidentiality · Data residency

Your data stays your data

Where your AI actually runs, who can reach it, what we will never do with it, and how you walk away with everything if you decide to.

Most AI vendors ask you to trust a privacy policy. We would rather show you the architecture. Nearly everything we build is self-hosted, which means the models run on computing hardware under your control and your documents, drawings, quotations, customer records and support history never leave that boundary. This page sets out exactly how that works.

01 · The short answer

Four commitments, in plain English

Your data is not training data

We do not train, fine-tune or evaluate any model on your content. Not ours, not anyone else’s.

Your data does not go to a third-party AI service

No OpenAI, Anthropic or Google API calls with your content — unless you specifically ask for a hybrid design and sign it off in writing.

Your machine is yours alone

Whether you own the hardware or we operate it for you, it is single-tenant. Never shared, pooled or resold.

You can leave with everything

Model weights, configuration, prompts, data. No hostage-taking, no proprietary formats.

02 · Where it runs

Three deployment shapes, one set of guarantees

Every Ascentis system is deployed in one of three ways. The software and the assurances are identical across all three; what changes is who owns the metal and where it sits.

Your own hardware Ascentis Private Compute Ascentis Hosted in UK/EU
Who owns the machine You Ascentis, dedicated to you Ascentis
Who else uses it Nobody Single-tenant, or shared with other Ascentis-built projects — set in the contract Shared platform, logical isolation per client
Where it sits Your premises Your country — UK or France United Kingdom or EU
Internet required No — can be air-gapped Encrypted link only Yes
Typical fit Defence, NDA-heavy and regulated work SMEs wanting full data control without an IT estate Smaller teams and evaluation
Indicative cost From £4,855 ex VAT, one-off From £200 per month Subscription

Ascentis Private Compute is not a GPU cloud and we do not rent capacity. We invest in the machine, install and operate it, and run the system we built for you on it. It never takes on workloads we did not build.

How isolated is it? That is a contract decision, and we would rather be straight about it than overpromise. Where the work is time-sensitive, used by many people at once, or falls under defence or regulated requirements, the machine is single-tenant — yours alone. Where the workload is light and periodic — a market intelligence digest that runs for three hours on a Wednesday night, say — it makes no commercial sense for a machine to idle for the other 165 hours, so the hardware may be shared across a small number of projects we have built and operate, with logical isolation between them. Which of the two applies to you is agreed before we start and written into the contract. If you want the detail on what owning the hardware yourself actually involves, our 2026 build, benchmark and cost guide shows the real numbers.

03 · Data residency

Your data stays in your jurisdiction

Residency is a property of the arrangement, not an add-on you pay extra for. A UK client’s machine sits in the United Kingdom. A French client’s machine sits in France. There is no cross-border replication, no failover to another region, and no analytics pipeline quietly shipping telemetry somewhere else.

This matters more than it used to. Under UK GDPR and the EU GDPR you remain the controller of your data and you are accountable for where it goes. Under the EU AI Act, transparency and human oversight obligations sit with the deployer. An architecture where your content never leaves your own hardware, in your own country, is the simplest answer to both.

For French clients: this is what souveraineté numérique looks like in practice.

Le système fonctionne sur une machine physique située en France, dédiée à votre entreprise, sans réplication hors du territoire.

04 · What we will never do

The list is short and it is absolute

05 · Standards we work to

Certified where it counts, aligned everywhere else

We are precise about the difference between holding a certification and aligning to a standard, because plenty of vendors are not.

Standard Our position
Cyber Essentials Certified. The UK government-backed scheme covering the five technical controls.
JSP 936 (Dependable AI in Defence) Aligned. Our delivery approach follows its principles for dependable, accountable AI.
DEFCON 658 (Cyber, MOD supply chain) Aligned. Relevant to defence and defence-adjacent supply chain work.
ISO/IEC 27001 Aligned to the controls across the stack. We are not certified to ISO 27001 and we do not claim to be.
UK GDPR and EU GDPR Data stays on infrastructure you control; deletion cascades on request.
EU AI Act Transparent AI, human oversight, and source citation end to end.
06 · Human oversight

A person signs off anything that reaches your customer

Our systems are designed to be checkable. Answers cite their sources, so a claim can always be traced back to the document it came from. Where output is customer-facing, a human approves it before it goes out. Where a system makes a recommendation, the reasoning is visible rather than buried in a score.

This is not decoration. It is the difference between an AI system your team trusts after six months and one they quietly stop using.

07 · Leaving

You can take it all with you

An AI system that holds you hostage is not an asset, it is a liability with a subscription. So the exit is written into how we build:

Deletion means deletion.

On request we delete your data with a full cascade across indexes, caches and backups, and confirm when it is done.

08 · Straight answers

Questions we get asked before every project

Can Ascentis staff read our data?

Access is limited to the engineers working on your system, for the purpose of building and supporting it. On an air-gapped deployment, we have no route in at all unless you give us one. Ask us for the specifics of your deployment and we will put them in writing.

Do you train on our data?

No. Not for you, not for another client, not for a general model. Your content is used to answer your questions and nothing else.

We are in a regulated sector. Is this viable?

It is usually the reason clients come to us. Regulated, NDA-heavy and defence-adjacent work is precisely where a self-hosted system beats a cloud subscription, because you can say exactly where the data is and prove it. We are Cyber Essentials certified and align to JSP 936 and DEFCON 658.

What happens if the machine fails?

For systems we operate, hardware failure is our problem, not yours — that is a large part of what Ascentis Private Compute is for. For systems on your own hardware, we agree the support arrangement up front so nobody is guessing on the day it matters.

Is the machine dedicated to us alone?

It depends on the workload and it is agreed in the contract. Single-tenant is standard where the work is time-sensitive, used by many people at once, or subject to defence or regulatory requirements. For light periodic workloads the hardware may be shared across a small number of projects we have built and operate, with logical isolation between them. Capacity is never resold to third parties.

Can we audit it?

Yes. The stack is open-source and inspectable, answers are source-cited, and we will walk your IT or compliance people through the architecture. We would rather have that conversation early than in a procurement review.

Related reading: Off-the-shelf AI vs bespoke AI · Self-hosted AI vs cloud AI · AI ROI calculator

Talk to us

The architecture conversation is free

If you have a security questionnaire, send it. If you have a policy that says AI tools are banned, we have probably read one like it and can tell you where a self-hosted system sits against it.

Get in touch · Read the build and cost guide · See what we have built