Home / Security
Security

Security is the architecture, not a feature.

Avonsn is designed so that strong security is the default, not an add-on. Your data stays where it already lives, the model runs beside it, and every answer is verifiable. This page explains how that works in practice.

Sovereignty by default

Keep the data. Run the model beside it.

Most AI requires you to send data out to be useful. Avonsn inverts that: the platform is installed where your data already is, so the sensitive information never has to cross your boundary in the first place. That single decision removes a whole class of risk.

  • Nothing leaves by default. No external egress in the standard configuration.
  • Open-source core. Inspectable models, not a black box.
  • Your perimeter, your rules. On-prem, private cloud, or air-gapped.
SECURE
Principles

How we protect your data

Security at Avonsn is structural: it comes from where the system runs and how it's built, not from a checklist bolted on at the end.

Data sovereignty

Your data stays in your estate and you remain its controller. Nothing has to leave for the platform to work.

No egress by default

In the default configuration there is no external data transfer — inference and storage run locally to you.

Open & inspectable

An open-source model core you can host, inspect, and tune, rather than a closed API you have to trust.

Least-privilege access

Components are scoped and separated, so each part of the system can reach only what it needs.

Encryption in transit

Connections between components are protected with modern transport encryption.

Air-gapped capable

Run fully offline in network-restricted environments for the most sensitive workloads.

Deployment

Runs where your data lives.

Choose the deployment model your security posture demands. The capability is the same; only the perimeter changes.

On-premises

Install entirely within your own data centre, behind your firewall, on hardware you operate.

Private cloud

Run in your own cloud tenancy — your account, your keys, your network boundary.

most secure

Air-gapped

Operate fully offline in network-restricted environments for the most sensitive workloads.

Governance & compliance

Built for the standards you're held to.

Avonsn is a UK company and the platform is designed around UK data protection law. Because each deployment keeps data inside the customer's environment, your organization remains the data controller, and Avonsn acts only under your instruction where it processes anything on your behalf.

  • UK-based, built around UK GDPR and the Data Protection Act 2018.
  • You are the controller. Because deployments keep data in your environment, your organization stays in control of it.
  • Shared responsibility. We harden the platform; you own the environment, access, and oversight.
  • Review-ready. We support your security reviews and data protection impact assessments.

For how we handle personal data on this website, see our Privacy Policy

# control plane deployment residency: "in your estate" egress: "none (default)" controller: "you" model_core: "open-source" ✓ on-prem · ✓ air-gapped · ✓ inspectable
Invitation only

Bring it to your security team.

We're glad to walk through architecture, deployment, and data-handling with your security and data-protection people.