A UK / EU-controlled air-gapped hosting environment for sensitive AI, data and cyber workloads.
A UK / EU-controlled air-gapped hosting platform for sensitive AI, data and cyber workloads. The Inference Distribution Network provides the sovereign substrate for local inference, RAG, model hosting, telemetry, audit evidence and controlled data movement.
Built across five platform layers (physical sovereign PoP, air-gapped compute, high-speed data fabric, sovereign storage and Sneakernet control), the IDN is designed so customer datasets, models, prompts, embeddings, logs, telemetry and encryption keys remain inside the approved UK / EU region. No inbound or outbound network connectivity is enabled by default. Ingress and egress are governed through signed manifests, encrypted media, malware scanning, hash verification and approved export controls.
Sovereignty is no longer a policy concern alone. It now reaches into the systems that run critical AI workloads: cloud infrastructure, identity, telemetry, software supply chains, model hosting, operational support and evidence custody.
AI also changes what must be protected. Prompts, model outputs, embeddings, RAG corpora, inference logs and runtime telemetry can reveal the subject matter of sensitive work, even when the original files remain protected.
For regulated organisations, the question is no longer simply where data is stored. It is where AI is processed, where tokens travel, where evidence is retained, who can operate the environment, and whether the full execution path can be governed, audited and defended.
The initial design uses High Performance Compute, 200 GbE RoCE fabric, external NVMe-oF storage, immutable audit storage and a separate sneakernet kiosk for controlled ingress and egress.
Secure cage, access control, CCTV, tamper-evident seals and two-person operating procedures.
High Performance Compute for local AI inference and RAG, with no external API exposure.
200 GbE RoCE fabric supporting inter-node traffic and NVMe-oF storage access.
Customer-isolated namespaces, model library, KV-cache support and WORM audit storage.
Encrypted media, signed manifests, malware scanning, hash verification and review or redaction.
Kiosk and signed manifests, malware scan and hash check.
Local AI inference and RAG with no external API exposure.
Privacy-gateway tokenisation and field-level encryption.
WORM audit, UK / EU-controlled HSM keys, tamper-evident chain.
Two-person review, redaction and approved exports only.
The Sovereign Edge IDN enforces security by design with the HEX 165 STPM Engine providing runtime security as a native platform service. The emphasis stays on the hosting environment: the security layer exists to protect the PoP, minimise telemetry, anonymise sensitive metadata and preserve audit evidence inside the boundary.
| Native IDN service | Purpose inside the hosting environment |
|---|---|
| STPM Engine (eBPF MicroSensor) | Captures minimal kernel-level security events from Linux hosts and Kubernetes nodes. |
| Privacy Gateway | Anonymises, tokenises, classifies and minimises data before it leaves the monitored asset. |
| Sovereign Collector | Receives and normalises telemetry only within a UK / EU-controlled environment. |
| Detection Engine | Autonomous detection without exposing unnecessary raw data. MITRE ATT&CK mapped. |
| Human Authorisation Console | Human-in-the-loop control for sensitive decisions, with break-glass and dual approval. |
| Sovereign Evidence Vault | Encrypted audit and evidence in the chosen UK / EU location, with legal hold and retention policy. |
The IDN uses open standards for portability and assurance, while the operating model keeps all processing, keys, telemetry and audit evidence inside the boundary.