For teams whose documents cannot leave the building

Ask your documents anything. Get the answer — and the paragraph it came from.

Legal, clinical, financial, defence: the work where pasting a contract into a chatbot is not an option. OwnMind runs on hardware you control, answers only from material your team has approved, and shows the passage behind every claim — or tells you plainly when there isn't one.

We'll only use your email to tell you when a pilot slot opens.Privacy

Your browserIdentity-gated accessYour deployment · model · index

Remote access uses disclosed network and identity providers. OwnMind is not zero-knowledge and is not end-to-end encrypted from the browser to the host.

The artifact

An answer you can take to someone who has to be sure.

Confidence is not the product. Checkability is. Every answer arrives with the excerpt it was built from, so the person who has to sign off on it can verify the claim in about ten seconds against a document your team already approved — without taking anyone's word for it.

  1. 1 The excerpt is the one the model read — not a summary of it.
  2. 2 The locator points at a place in the document.
  3. 3 If nothing supports the answer, you get that instead.
Answer · grounded
Asked

Can a fixed-term contractor claim the overtime rate for weekend on-call?

Answered

Not at the overtime rate. Fixed-term contractors are eligible for on-call compensation1.1, but the multiplier applies to permanent staff only2.1. Weekend on-call is paid at the standard hourly rate, and anything past the rostered window needs written approval from the engagement owner in advance2.2.

1.1Contractor Engagement Policy§4.2

Fixed-term contractors are eligible for on-call compensation from their first rostered shift.

2.1On-Call & Overtime Standard§1.4

The 1.5× overtime multiplier applies to permanent employees only.

2.2On-Call & Overtime Standard§3.1

Hours worked beyond the rostered on-call window require written approval from the engagement owner in advance.

Grounded · 2 sources of 6 retrieved
Answer · ungrounded
Asked

What is the parental leave allowance?

Answered

I couldn't find enough evidence for that answer in the approved company documents.

Ungrounded · 0 sources

How it runs

Four steps, all of them on your side of the boundary.

01

You approve the material

An administrator adds a document and types a confirmation sentence to record that it is approved company knowledge. Nothing is indexed without that step.

02

It is indexed on your host

Approved uploads are sent to your deployment for parsing and indexing in your own Postgres. They are never sent to a third-party model provider.

03

Retrieval finds the passages

A question is matched against approved material by meaning and by wording at once, so the right section is found whether the reader used your vocabulary or their own.

04

A local model answers

Generation happens on your hardware. The answer streams back with a numbered citation for each passage it used, and says so plainly when the approved sources do not cover the question.

Deployment

Your rack, or your cloud account.

OwnMind is installed into infrastructure your organization already controls. There is no OwnMind-operated inference tier, and no request to a third-party model API.

Your rackOn-premises hardware you own and administer.
Your cloud accountA machine in your own tenancy, under your own billing.

Remote access uses disclosed network and identity providers. This is not zero-knowledge and not end-to-end encrypted.

What listens, and where

generation127.0.0.1:8081
embeddings127.0.0.1:8082
postgres + pgvector127.0.0.1:5432
api127.0.0.1:8000
egressoutbound only

Generation, embeddings, and the database bind to the loopback interface. The application is the only thing reachable from outside, and only through your identity gateway.

Governance

The controls a security reviewer will ask about.

Approved sources only

Answers are drawn from the collection your administrators approved. Retrieved text is treated as untrusted reference material, never as instructions.

A citation for every claim

Each supporting passage arrives as a numbered citation carrying the document name, its locator, and the exact excerpt used.

Refusal over invention

When the approved material does not support an answer, the assistant says it was not found rather than filling the gap.

Identity at the edge

Access is gated by your identity provider, and the API independently validates the signature, issuer, audience, and expiry of every request against an explicit allowlist.

Recorded administration

Adding, listing, and deleting company knowledge is written to the host's audit log under a stable pseudonymous actor identifier.

Nothing kept by default

Conversations are temporary. Prompts and answers are not written to disk, and prompts, responses, and source excerpts are never logged.

Comparison

Where this differs from a general assistant.

General-purpose assistantOwnMind
Where the model runsA vendor's cloud APIA process on your hardware
Where your documents sitUploaded to the vendorYour Postgres, in your deployment
Evidence for an answerOften none, or a web linkA numbered excerpt from an approved document
When it doesn't knowFrequently answers anywaySays the approved sources do not cover it
Who can add knowledgeAnyone with the chat windowAdministrators, behind a typed confirmation
Conversation retentionRetained, often to improve the serviceTemporary; nothing is stored after the tab closes

How to start

Try it on ours. Then we build yours.

Every engagement starts with a short pilot on OwnMind's evaluation host, using material that is safe to share. If the pilot earns its place, we scope a deployment around your documents, your identity provider, and your hardware, and build it for you.

  1. Stage 1 · Seven days

    Private pilot

    Your team tries OwnMind on our evaluation host, with sample material.

    • Up to five named users from one company
    • Fictional, public, or explicitly sanitized documents only
    • Cited answers, “not found” refusals, and approved-document controls
    • Best-effort availability during agreed testing hours
    • A decision report on quality, latency, security, and hardware sizing

    Reached through disclosed network and identity providers. Not for confidential data.

  2. Stage 2 · Built for you

    Your deployment

    We build OwnMind for your company and install it on infrastructure you control.

    • Installed in your rack or your own cloud account
    • Your approved documents, indexed in your own Postgres
    • Sign-in through your identity provider, for every named user you need
    • Capabilities your workflow needs, built to order
    • No OwnMind-operated inference and no third-party model API

    Confidential material belongs here, after your security review — never in the pilot.

Pricing

Priced per deployment, not per question.

Private pilot

Fixed feeagreed at the fit check

Seven days on OwnMind's evaluation host, with fictional or sanitized material.

  • Up to five named users
  • One approved knowledge collection
  • Cited answers and the audit trail
  • Decision report with hardware sizing
Request a private pilot

Custom

Talk to us

Multiple deployments, unusual hardware, or requirements this page does not cover.

  • Scoped to what you actually need
  • Built-to-order capabilities, listed below
  • Reviewed against your security process
Request a private pilot

Each engagement is quoted for your company after the fit check. Your deployment runs on infrastructure you control: there is no OwnMind-operated inference tier and no per-token charge, because your questions never reach us. The pilot is the one exception. It runs on OwnMind's evaluation host, which is why it accepts sanitized material only.

What you can prove

Three things you can put in front of a reviewer.

ARTIFACT 01

The citation

Every answer carries the document name, the locator inside it, and the excerpt the model actually read. You can check the answer against the page.

ARTIFACT 02

The audit line

Each administrative action on company knowledge appends a record naming the event, the pseudonymous actor, and the document involved.

ARTIFACT 03

The service map

Generation, embeddings, database, and API bind to loopback. What listens where is something your team can verify on the host itself.

Built to order

Scoped into your deployment when you need it.

Everything above this line comes standard with a deployment. What follows is not part of the pilot or the standard build: each capability is scoped during your proposal and built into your deployment when your organization needs it. If one of them decides whether OwnMind fits, say so early.

BUILT TO ORDER

Access that follows your directory

SSO against the identity provider you already run, with access inside the application following your directory's groups and its joiners and leavers process — not only a gate at the edge.

BUILT TO ORDER

Connectors to where documents already live

SharePoint, Google Drive, Confluence and S3, so approving a source stops meaning re-uploading it by hand.

BUILT TO ORDER

Retrieval that respects existing permissions

ACL-aware retrieval, so an answer can only draw on the documents the person asking is already cleared to read.

BUILT TO ORDER

Disconnected and centrally logged

Air-gapped installation with signed update bundles, and SIEM export for teams whose logging is consolidated elsewhere.

Start with a controlled, evidence-led evaluation.

Seven days, one company, up to five named users, and only fictional, public, or explicitly sanitized material. Remote access uses disclosed network and identity providers, and the evaluation is explicitly not zero-knowledge or end-to-end encrypted. If the pilot earns its place, we scope and build your deployment.

We'll only use your email to tell you when a pilot slot opens.Privacy