How it works

One engine. Four steps. Your own network.

Suvard sits in the path of the AI traffic, between your staff and systems on one side and the AI models on the other. Every request goes through the same four steps, in every sector. Only the detector changes.

Finds

what must never leave the building: names, CPR numbers, addresses, account numbers, diagnoses. Also what no list knows, with a detector trained for the sector.

Masks

the findings with placeholders before the AI sees them. The user sees what was found and approves it. No new workflow.

Stops

what must not happen, by your own rules: who may send what to which model.

Seals

every event in a signed chain where later changes can be detected, and which others can verify without trusting us.

Where does it sit?

Between your people and the models. Never instead of either.

Your side
Staff and line-of-business systems

Chat, drafts, decision support, agents. The workflow does not change; the user only sees what was masked.

Suvard · on your network
Control and evidence layer

Finds, masks, stops, seals. The keys are yours. No content leaves the building, and nothing is sent to us.

The models
Cloud AI or local models

ChatGPT, Claude, Gemini, Copilot, or a model in your own data centre. We never supply the language model itself.

Evidence is only truly independent if the entity sealing it has no stake in the outcome. That is why Suvard sits outside both the workflow and the model.

An example from healthcare

What the employee sends. What leaves your network.

The same question to the AI, but without anything that can identify the patient. The user sees the findings and approves the placeholders before anything is sent.

What the clinician writes

Draft a discharge summary for Jens Hansen, CPR 010190-1234, Vestergade 12, Aalborg, admitted with atrial fibrillation, treated with Marevan.

Marked: what the detector finds. Example data is fictional.
What reaches the model

Draft a discharge summary for [NAME], CPR [CPR][ADDRESS], admitted with [DIAGNOSIS], treated with [MEDICATION].

The answer comes back with the placeholders in place; the content is re-inserted on your side.

The healthcare detector is a Danish clinical language model, trained without a single patient record, plus CPR number checks. In energy, finance, legal, defence, space and the public sector it is the same four steps with another detector, when we get there.

The evidence

A trail that can be verified without trusting us.

Hash-chained

Each event points to the previous one using a cryptographic fingerprint. If a single line is deleted or altered, the chain breaks, and the tampering is immediately evident.

Signed with your keys

The seal is signed using keys held by you, not by us. What is sealed is the proof of what occurred, never the content itself.

Open verifier

A small, standalone utility with no dependencies can verify the seal offline. Anyone can run it. That is what makes the independence more than a promise.

The same seal can be applied to non-conversational AI, such as draft entries in the EHR or decision support within the line-of-business system binding the AI's output and the human action into a single event. That is the evidence layer; fully built and currently piloting.

Questions we hear

Straight answers.

Is Suvard a cloud service?

No. Suvard is installed on your own network, on your own infrastructure. Nothing sensitive leaves the building. That is the whole point.

Do we need to run AI models or buy GPUs ourselves?

No. Suvard sits in front of the AI services your staff already use. Local models are an option, never a requirement. We never supply the language model itself.

Which AI services does it work with?

Suvard sits in the path of the traffic as a proxy and is therefore vendor-independent: ChatGPT, Claude, Gemini, Copilot and AI built into line-of-business systems. Same engine, same evidence.

What is in operation today, honestly?

Healthcare, through CareProxy: the engine with Danish clinical detection, masking and a signed log is validated in Treat Systems' technical environment, and we are in dialogue with a Danish region. The evidence layer (the independent seal) is built and in a pilot phase. Detectors for energy, finance, legal, defence and the public sector are not built yet; the engine is the same.

Does Suvard make us compliant with GDPR and the EU AI Act?

No tool can promise that. Suvard supports compliance: it enforces your rules technically and produces the evidence. The legal assessment remains yours.

What evidence do we get when the regulator calls?

A hash-chained, signed log of every AI request and every decision, which can be exported and verified with a small, standalone program, without trusting us.

How is this different from a firewall or classic DLP?

A firewall sees packets; classic DLP sees patterns. Suvard understands what is being sent to AI: it masks it with placeholders people can keep working with, stops what must never leave the building, and proves afterwards what happened.

How do we start?

A conversation, a mapping of your actual AI use, and then a pilot in your own environment. Write to matias@suvard.com.

Next step

A 30-minute check on where AI is already running in your organization.

We start with a mapping, not a sale. You get an honest picture of what passes through your network, and what it would take to be able to prove it afterwards.