AirGap Keeper logoAirGap Keeper
AirGap Keeper, UK GDPR Article 28 Compliant

The Analytical Power of Generative AI.Zero Cloud Risk.

We provide highly regulated UK organisations with the analytical power of Generative AI without the data exposure risks of cloud-based platforms. We operate a 100% offline, air-gapped AI processing bureau with a contractual Zero-Retention Guarantee.

  • No Cloud APIs
  • No Model Training
  • No Internet Connection
  • 72-Hour Data Erasure

Cloud AI is a Regulatory Liability.

You want the efficiency of AI document extraction, but SRA obligations, NHS DSP requirements, and strict client confidentiality make uploading sensitive bundles to cloud-based tools a significant regulatory risk.

No Cloud APIs

We do not rely on third-party cloud APIs (for example OpenAI, Microsoft Azure, AWS), eliminating the risk of hidden telemetry or data scraping.

No Model Training

We do not use customer data to train, fine-tune, or otherwise improve our models.

No Internet

Processing workstations run entirely offline, with all wireless (Wi-Fi and Bluetooth) and external networking removed or permanently disabled.

Processor-Grade Compliance in 4 Steps.

  1. STEP 01

    Encrypted Transit

    You courier an encrypted hard drive of case files to our secure facility. Passphrases are provided out-of-band via phone.

  2. STEP 02

    Staging and Quarantine

    Your drive is received, logged, write-blocked, and scanned for malware through our "Dirty" Staging Station.

  3. STEP 03

    Air-Gapped Processing

    Data is safely extracted to internal media and moved to the air-gapped enclave. Local LLMs extract and structure the data according to your documented instructions.

  4. STEP 04

    Erasure and Return

    We return the structured outputs to you on encrypted media. Once delivery is confirmed, all working copies are cryptographically erased to NIST SP 800-88 Rev. 1 — within a maximum of 72 hours — and a certificate of erasure is available on request.

Designed for UK GDPR Article 28 Compliance.

100% Air-Gapped Infrastructure

Your data never touches the internet. Our core AI processing enclave is physically and logically isolated.

Zero Data Retention

Customer data is never written to persistent host operating systems. Every completed job is accompanied by a time-stamped Certificate of Data Destruction for your compliance records.

Forensic-Grade Physical Custody

All incoming drives are logged, inspected for physical compromise, and stored in tamper-evident evidence bags within a fireproof safe.

Aggressive Malware Quarantine

Customer drives are connected exclusively via forensic hardware write-blockers, preventing weaponised USB firmware or auto-run malware from executing.

Why We Built This

We started AirGap Keeper because we saw a massive disconnect in highly regulated industries. Brilliant paralegals, financial auditors, and medical professionals are spending thousands of hours doing manual data entry simply because "The Cloud" is too much of a security liability for their sensitive documents.

Public AI is amazing, but you can't feed it unredacted NHS records or highly confidential M&A contracts. We built an environment where you don't have to choose between cutting-edge AI efficiency and your ethical obligations. We exist to give your fee-earners their time back, keeping your data locked down on physical, UK-based silicon.

The Compliance Bottleneck

The legal and financial sectors are in a difficult position. Firms are under pressure to adopt AI, yet compliance departments are rightfully blocking the use of cloud-based LLMs due to data sovereignty and privacy risks.

You cannot afford to fall behind on tech, but you cannot afford a data breach. AirGap Keeper' offline infrastructure is the only way to deploy powerful Large Language Models while remaining strictly aligned with UK GDPR, NCSC physical security guidelines, and your clients' stringent NDAs.

Zero compromise

Adopt AI without sending a single byte of client data to a third-party cloud provider.

Dedicated, Finite Compute Power

Because we refuse to use unlimited public cloud servers, our processing capacity is strictly tethered to our physical, localised GPU Enclaves in our UK facility.

AirGap Keeper does not offer instant, automated API access. We accept client intakes on a strict, scheduled project basis. When your encrypted drive is plugged into our Enclave, 100% of our hardware's compute power is dedicated solely to your caseload until the extraction is complete and the drives are wiped.

Test the Engine (Zero Risk)

Don't trust the cloud, and don't take our word for it. We want to prove the accuracy of our local models before you sign an MSA or send us a hard drive.

01

Send us a fully redacted, anonymised 10-page document via email (ensure all PII is removed before sending).

02

Tell us what data points you want extracted.

03

AirGap Keeper will run it through our offline AI models.

04

We return the structured JSON or Excel output within 24 hours, completely free of charge.

The Pilot Test is free of charge. See the accuracy for yourself: compliance@airgapkeeper.com

Transparent Pricing

Fixed-fee compliance reviews and a free infrastructure briefing, with no hidden cloud API costs.

Compliance Review

Structured assessment of your data-handling obligations and the air-gapped alternative.

£1,950

Fixed fee per matter, excl. VAT

Infrastructure Briefing

15-minute technical walk-through with an engineer.

Free

No obligation

Need the full price list?

See add-ons, FAQs and booking options.

View Pricing

Submit Your Drive Details.

Tell us what you are sending and we will issue secure despatch instructions and a chain of custody reference within one working day. Encrypted media is only accepted once that reference has been issued.

Never send passwords, passphrases or decryption keys through this form. Keys are exchanged separately once your chain of custody reference has been issued.

Audit Our Architecture.

Download our comprehensive Security Assurance and Architecture Summary to see exactly how we align with NCSC best practices and UK GDPR Article 32 requirements for the security of processing.

Let's Talk Security

We know that adopting AI requires buy-in from your IT and Compliance Directors. We make that easy.

Book a 15-Minute Infrastructure Briefing

Schedule a brief, no-obligation video call with AirGap Keeper. We won't give you a sales pitch. We will walk your technical team through our physical air-gapped workflow, our hardware write-blocking protocols, and our zero-retention erasure procedures so you can tick every box on your compliance checklist.

Built on Enterprise-Grade Technology and Strict Frameworks

  • NVIDIA
  • Ubuntu
  • Python
  • UK GDPR
  • ICO