Deployed in your environment
Data never leaves your control
No multi-tenancy. No shared infrastructure.
You remain the data controller
Security by design, not bolt-on
Purpose-built AI · Data compliance

Your data
tells the
truth.
We surface it.

Custom AI systems for DSARs, FOI, data breaches, and financial mis-selling — built for your documents, your workflows, your obligations. No SaaS contracts. No compromises.

10+
Products shipped
NDA first
Client references available
100%
Custom builds
verity — document intelligence
...per your request dated
14/03/2024 we confirm
the following personal data
is held: correspondence
ref CMP-2847, account
opened 2019. Product sold
by adviser J. Morris.
Rate: 4.9% APR. Monthly
repayment: £342.00...
type DSAR response
date 2024-03-14
ref CMP-2847linked
acct opened 2019
risk mis-selling
adv J. Morris
rate 4.9% APR
pay £342.00/mo
act review req'd
DSARs & subject access requests Freedom of Information Data breach triage Financial mis-selling reclaim DCA & car finance claims eDiscovery & legal disclosure Employment tribunal disclosure Regulatory investigations Privilege review Medical records access Pension & SIPP mis-selling Insurance fraud investigation Safeguarding reviews Unstructured document processing Redaction & data minimisation Workflow automation DSARs & subject access requests Freedom of Information Data breach triage Financial mis-selling reclaim DCA & car finance claims eDiscovery & legal disclosure Employment tribunal disclosure Regulatory investigations Privilege review Medical records access Pension & SIPP mis-selling Insurance fraud investigation Safeguarding reviews Unstructured document processing Redaction & data minimisation Workflow automation
What we do

Complex data problems
need
custom solutions

Off-the-shelf SaaS products are built for the average case. Data subject access requests, FOI obligations, breach investigations, and mis-selling claims are never average — they're tangled in your specific documents, your systems, your history.

We build AI that understands your problem the way your best analyst would. Then we make it work at a scale they never could.

Our team has shipped over a decade of data-heavy products across compliance, document intelligence, and regulated industries. We don't consult. We build — and we keep our clients' names to ourselves.

Compliance professional's desk with document files and review screens Documentary workspace
compliance desk, real work, no posed professionals
800 × 360px
Data rights & subject access
DSARs, right to erasure, data portability, and objection to processing — the full family of GDPR data rights requests, handled at volume.
Freedom of Information
Document search, relevance scoring, and exemption flagging across large unstructured repositories — built for public sector obligations.
Financial mis-selling & reclaim
PPI, DCAs, car finance, packaged accounts, pension transfers, SIPPs. Evidence extraction and case construction from financial records at scale.
Data breach & regulatory response
Fast impact triage across exposed document estates. ICO, FCA, FOS, and CQC investigation support — knowing what you hold before they ask.
eDiscovery & legal disclosure
Litigation document review, privilege identification, and relevance scoring — reducing the cost and risk of disclosure obligations in civil and employment proceedings.
Sectors & use cases

Where we work

Every sector below shares the same underlying problem: high volumes of unstructured documents, regulatory deadlines, and consequences for getting it wrong. That's the problem we solve.

Data rights
DSARs & GDPR data rights
Subject access, erasure, portability, and objection to processing requests under UK & EU GDPR. Volume is increasing year on year — and the 30-day clock doesn't move.
Subject accessRight to erasureData portabilityThird-party redaction
Public sector
Freedom of Information
Local authorities, NHS bodies, government departments, and other public bodies managing FOI and EIR requests across fragmented, legacy document estates.
Relevance scoringExemption flaggingEIR requestsBacklog clearance
Financial services
Mis-selling & reclaim
PPI redress, discretionary commission arrangements (DCA) on car finance, packaged bank accounts, pension transfer and SIPP mis-selling, structured product claims.
DCA / car financePension mis-sellingPPI redressEvidence extraction
Legal
eDiscovery & disclosure
Civil litigation, commercial disputes, and regulatory proceedings requiring document review at scale. Relevance classification, privilege identification, and review queue management.
Privilege reviewRelevance classificationReview queuesCost reduction
Employment
Tribunal & HR disclosure
Unfair dismissal, discrimination, and whistleblowing claims require rapid gathering of emails, HR records, and communications. Often compounded by a tactical DSAR from the claimant.
Email archive reviewHR record collationTactical DSAR responseTimeline construction
Cyber & compliance
Data breach triage
When a breach occurs, the first 72 hours determine your ICO notification obligations. We help organisations understand rapidly what personal data was exposed, to whom, and at what risk.
Impact assessmentICO notification72-hour triageData mapping
Healthcare
Medical records & safeguarding
Patient access requests, coroner's inquest document production, and serious case reviews. NHS trusts and independent providers handling sensitive records across multiple legacy systems.
Patient accessCoroner's inquestsSafeguarding reviewsMulti-system collation
Insurance
Claims & fraud investigation
Insurers reviewing potentially fraudulent claims need to cross-reference large unstructured document sets and identify patterns. Regulatory reporting obligations create the same document-heavy workflow.
Fraud pattern detectionClaims file reviewRegulatory reportingCross-case analysis
Emerging
Business energy
Energy contract mis-selling
Business energy mis-selling is the next major reclaim wave. Undisclosed broker commissions, unsuitable tariffs, and misrepresented contract terms across millions of SME accounts. The regulatory and claims volume is building now.
Broker commission reviewContract analysisSME claimsFOS submissions
Dark technical drawing / circuit texture
How it works

Built around your data,
not ours

We don't apply a generic AI model to your problem. We run a structured discovery process, then build and train a system on your actual documents and workflows.

Discovery
Understand the problem
We spend time with your team and your data. What documents do you work with? Where are the bottlenecks? What does a good outcome actually look like?
Architecture
Design the system
We propose an AI architecture and workflow design specific to your problem — not adapted from a template. You own every decision before build starts.
Build & train
Build on your data
We build the system and train the AI on your documents within your environment. The AI retains memory and context that belongs to you, not us.
Operate
Improve over time
We stay involved. As your data and obligations evolve, the system evolves with them. You have a technical partner who already knows your problem.
Who we build for

Two types of client.
One approach.

Every engagement is custom — but the clients we work with tend to fall into one of two categories.

Service providers

You already do this work. You need better technology.

You're a compliance firm, legal services company, or managed service provider handling DSARs, FOI, or claims on behalf of clients. You have expertise and volume — but your technology hasn't kept pace.

  • Upgrade from manual or semi-automated processes without disrupting delivery
  • Build AI that understands your methodology, not a generic one
  • Own the technology — not dependent on a vendor's roadmap
  • Scale capacity without linear headcount growth
In-house teams

You have the problem. You don't want a SaaS contract.

You're a business handling your own regulatory obligations — DSARs, breach notifications, financial reclaim exposure. SaaS products don't fit your data environment or your risk appetite.

  • Purpose-built for your specific document types and processes
  • Deployed in your environment — data never leaves your control
  • No per-seat pricing, no renewal negotiations, no feature gating
  • A team that understands compliance, not just software