Security
Professional privilege is not a configuration option.
You are bound by obligations most tools simply ignore. Three things matter: what the agent refuses to do, how you verify it keeps its word, and where your data lives.
What the agent never does.
These are not marketing promises. They are limits written into the configuration of every agent, practice by practice — it has no technical means of crossing them.
- Give legal advice, analyse a case or quote fees in a lawyer’s place.
- Serve a legal document — that is the legal monopoly of the enforcement officer and their sworn clerk.
- Execute an authentic deed or settle a point of law in a notary’s place.
- Make a diagnosis, give a medical opinion or quote a price for a procedure.
- Sign accounts or a certificate in a registered accountant’s place.
- Send a legal document, a letter or any external message without explicit human approval.
- Work around two-factor authentication, or any other security measure.
The random check, every evening.
An agent nobody ever checks is an agent you have no reason to trust. But re-checking everything would mean doing the work twice — which would defeat the point.
So at the end of the day the agent picks a few of the files it handled, at random, and asks you to open them. Five minutes, on a sample it did not choose to flatter itself.
It is a spot check, like a random search. It does two things: it gives you an honest measure of reliability over time, and it surfaces the edge cases specific to your practice that nobody thought to describe.
On top of that, the log: every move is timestamped and recorded. If a file looks wrong, you can reconstruct the whole day.
Where your data lives.
The machine sits on your premises
The agent runs on a dedicated machine we supply and install on your premises. It shares nothing with your team’s computers, and it does nothing else.
The connection only goes one way
That machine exposes nothing to the outside. No remote service can send it an instruction: it always goes out to fetch the work. That is what makes it safe to host privileged material on a connected machine.
The data stays put
Your files stay on the machine and inside your own software. Nothing is copied elsewhere, and nothing is used to train anything — not by us, not by a third party.
No credentials in the clear
Access details are placed on your machine and never leave it. They appear in no document, no code and no backup that we hold.
Switch it off and it stops
No third-party subscription your production depends on. Turn the machine off and the agent ceases to exist. Your software and your files have not moved.
GDPR and professional privilege
Local processing, no transfer outside the European Union, and special-category data treated as such. The scope is agreed in writing before deployment.
What we hear, and what we answer.
Distrust of AI inside a regulated profession is healthy. Here are the objections that come up most often — none of them is unreasonable.
- “AI makes things up.”
- It does, when you ask it to produce knowledge. Here it copies information from a document into a piece of software, and nothing else. Every value it carries over is checkable against the source, and the result is a draft you review.
- “My files will end up with a foreign vendor.”
- The machine sits physically in your office and receives nothing from outside. Your files never leave it, and they train no model.
- “I will lose control of my own cases.”
- The agent can neither send nor sign. It prepares, then stops. Anything that leaves your practice leaves because you clicked.
- “My professional rules forbid it.”
- Which is precisely why the red lines sit in the agent’s configuration rather than in a contract clause. Advice, diagnosis, service of process and signature are simply out of its reach.
- “It will replace my staff.”
- It takes over the retyping, not the profession. A clerk who spends the day copying a judgment goes back to client contact, debtor follow-up and the substance of the file. None of our clients has cut headcount.
- “I have been sold automation before, and it never ran.”
- Often, yes. That is why we start with a single task, recorded in your own office, and only widen its remit once it genuinely works.