Most AI tools assume cloud connectivity. The work that matters most often can't allow it. Government, defense, sovereign analytical programs, and regulated research environments need the analytical horsepower of today's AI technologies without the data egress, third-party API calls, or external dependencies that put commercial AI off-limits behind the firewall.
Queries, source material, and analytical conclusions never leave your network. Nothing goes to a model provider. Your data stays local and never transits the public internet.
Classified workflows, regulated research, and controlled-data environments require deployment inside your existing accreditation perimeter. Hinsley AirGap is designed to fit there.
Forward-deployed teams, disconnected research facilities, and resilient command-and-control environments can't depend on internet-reachable APIs.
When the corpus you're analyzing is itself sensitive — investigative material, classified reporting, proprietary research — no third-party model provider should ever see it.
Four architectural decisions make Hinsley AirGap fit where commercial AI products can't.
Bring your own model. Hinsley AirGap runs on any open-weights large language model — Llama, Mistral, Qwen, DeepSeek, or a customer-fine-tuned variant. Swap models without touching the rest of the platform; choose the size and posture that matches your compute footprint and accuracy requirements.
Self-contained, no external dependencies, no phone-home, no licensing checks. Drop it onto your existing infrastructure — bare metal, Kubernetes, or an internal VM cluster — and run. Validation, hardening, and deployment fit your existing IT processes.
Need outside information without opening an attack surface? Hinsley AirGap supports a one-way sync from a Hinsley instance running on the open internet. Curated reference material, structured updates, and intelligence packages cross the boundary under your governance — never the reverse.
Open-weights models have a training cutoff. Hinsley AirGap ships with a continuously refreshed knowledge corpus — reference documents, structured world knowledge, and curated source material — so analysts can ground their reasoning in current information even when the deployment is fully offline.
Designed for the controls auditors actually ask about.
Every inference, retrieval, and reasoning step happens inside your perimeter. No outbound traffic by default.
Queries, retrievals, model outputs, and user actions logged to your existing SIEM with structured event records.
Integrates with your existing IAM via SAML or OIDC, with optional SCIM provisioning for automated user lifecycle. Granular role and membership controls: account admins manage their teams, members access only the accounts they belong to, and per-analysis permissions are enforced on every action.
Sensitive fields in the database — emails, API tokens, OIDC client secrets, MFA backup codes, invitation tokens — are encrypted at the application layer. TLS protects in-flight traffic inside your perimeter. Crypto primitives come from the standard OpenSSL stack on the host operating system you control, so your existing cryptographic posture is the one Hinsley inherits.
All encryption keys, application secrets, and credentials are configured and owned by your team. Nothing is fetched from a Hinsley-managed key service. Use the secret-management process your security team already trusts.
No surprise components, no opaque telemetry, no third-party dependencies that won't survive review.
Real environments where Hinsley AirGap is the right shape.
All-source analytical workspaces inside SCIFs and accredited classified networks, where every query and retrieval has to stay inside the perimeter.
National-security and policy research where data residency, supply-chain provenance, and developer-citizenship of components all matter.
Edge deployments in field operations centers or in disconnected research facilities where internet connectivity isn't an assumption.
Pharma, energy, financial intelligence, and critical-infrastructure environments where source documents and analytical work cannot transit external networks.
Hinsley AirGap is the full Hinsley platform — the same scenario development, decomposition, indicator tracking, and AI forecasting workflow your analysts already know — running inside your security boundary.