Solution · Sovereign Deployment

Air-gapped. Full Griffin lineup. No internet egress.

Safeguard runs in sovereign and classified environments on customer-owned GPU, with no internet egress, full audit log export, and the entire model family — through Griffin Zero (671B-MoE) — installed on-prem. Built for regulated public-sector workloads and defence supply chains.

STQC
Ready
FedRAMP
HIGH Ready
CMMC
L3 Aligned
0
Egress
What sovereign means here

Three guarantees, no asterisks.

Sovereign is not a marketing tier. It is a deployment topology with measurable properties — and we ship the evidence.

Physically isolated control plane

Control plane and inference cluster live on customer-owned hardware. No shared tenant boundary, no shared key material, no shared logs.

Customer-controlled keys + audit

Bring-your-own KMS, hardware-rooted signing, and a full audit log export every action emits — in JSON and CycloneDX, signed.

Full model lineup on-prem

Lino at the edge, Eagle in the cluster, Griffin Lite through Griffin Zero (671B-MoE) all run on-prem with no calls to Safeguard's cloud.

Deployment shapes

Same brain, four isolation levels.

Pick the shape that matches your data-residency and trust boundary. The lineup stays consistent end-to-end.

Shared cloud

Multi-tenant

Multi-tenant inference, fastest onboarding, per-tenant isolation at the prompt and KV cache layer.

Dedicated cluster

Single-tenant

Single-tenant inference on isolated VPC hardware. No cross-tenant traffic, deterministic latency, SHA-pinned weight attestation.

VPC-isolated

Customer VPC

Customer-controlled VPC, bring-your-own-key encryption, no cross-tenant traffic. Inference plane sits inside your network perimeter.

Sovereign / air-gapped

On-prem GPU

No internet egress, on-prem GPU, full audit-log export. Suits regulated, classified, and sovereign workloads.

Compliance alignment

Frameworks the deployment is designed to satisfy.

Pre-mapped control narratives, evidence packages on demand, and exports in the formats your auditor already accepts.

SOC 2 Type II
ISO/IEC 27001:2022
FedRAMP HIGH
CMMC Level 3
NIST SP 800-161
EO 14028
NIS2
DORA
STQC
Customer-specified regulatory frameworks
Operations posture

How it runs inside the wire.

Posture, in writing

  • Model weights signed and verified at install with SHA-pinned attestation.
  • Per-tenant inference isolation — no cross-tenant prompt or KV cache reuse.
  • Full audit log export in JSON and CycloneDX, signed at emission.
  • On-prem GPU sizing scales from 2x H100 (Growth) to 22x H100 multi-AZ (Mature).
  • Customer-controlled break-glass workflow with hardware-rooted approval.

On your hardware. Under your keys.

Talk to the team about on-prem GPU sizing, signed offline bundles, and the evidence packages your ATO or sovereign-readiness review needs.