ALVOR
Platform
Advisory
PricingBlog
Get Demo
ALVOR
Platform
Advisory
PricingBlog
Get Demo

Platform · AI Assistant · Self-Hosted Models

The AI stays inside your boundary.

Every AI feature in Alvor runs on a model you choose, and that model can be one you host yourself. Point the assistant at vLLM, Ollama, or any OpenAI-compatible endpoint and the agentic studios work exactly as they do with a cloud provider: the AI proposes, a person approves, and no prompt, diagram, or record ever leaves your network.

Bring your own modelIn AI Assistant
See it liveThe AI assistant

The definition

What does bring-your-own-model mean?

VPCClientGatewayPaymentsPostgresRedis
Proposed · awaiting approvalReview

Most platforms with AI features bundle a vendor-managed model: your data goes to their AI service, on their terms, under their sub-processor agreements. Alvor never bundles a model. You connect your own provider, Anthropic, OpenAI, Google, Azure OpenAI, Amazon Bedrock, or any OpenAI-compatible endpoint, and every AI feature runs through it.

That last option is the one regulated environments care about. An OpenAI-compatible endpoint does not have to be OpenAI: it can be a vLLM server on your GPUs or an Ollama instance in your data centre, serving an open-weights model your security team has already approved. The assistant does not know or care where the endpoint lives.

Combined with on-premise deployment, this closes the loop that stalls AI adoption in defense, government, and critical infrastructure: the platform runs on your servers, the model runs on your servers, and the audit trail of every AI action stays inside the boundary. Fully air-gapped operation is supported; picture-to-diagram needs a vision-capable model, and every other studio works with any capable chat model.

How it works

From endpoint to working assistant

1

Stand up the model server

vLLM or Ollama on your hardware, or any inference server exposing an OpenAI-compatible API. Your model choice, your GPUs, your network.

2

Point Alvor at the endpoint

Model configuration is an endpoint URL and a model name, set by an administrator. Changing providers later is the same one-screen change.

3

The studios work unchanged

Architecture diagramming, threat modeling, policy drafting, design documents, continuity planning: every studio calls the model you configured.

4

Writes stay approval-gated

The assistant proposes; the write pauses on an approval card showing the exact payload; a person applies it. The model's location changes nothing about the trust model.

5

Everything lands in the audit trail

Every AI action is attributable and logged alongside every human action, inside your boundary.

Control, without losing the assistant

Any OpenAI-compatible endpoint

vLLM, Ollama, and self-hosted inference servers connect the same way as the cloud providers: an endpoint and a model name.

Your provider, your terms

Anthropic, OpenAI, Google, Azure OpenAI, Amazon Bedrock, or an endpoint you run. The model relationship is yours, never resold through us.

Air-gap ready

With the platform on-premise and the model inside the boundary, no AI feature needs an internet connection.

Approval-gated writes

The AI proposes and drafts; a person approves every write, whatever model is behind it.

Audit-logged, always

Every AI action is attributable and logged, the same as a human action, wherever the model runs.

Honest about vision

Picture-to-diagram needs a vision-capable model; every other studio works with any capable chat model you serve.

Alvor never bundles or resells a model. The assistant sees only what the signed-in user can see, every write is approval-gated, and plan activation, incident close, and approvals stay human-only, whether the model is a cloud provider's or one on your own GPUs.

The control model

The same brakes as everywhere else in Alvor.

The full control model
Permission-scoped
Approval-gated writes
Bring your own model
Audit-logged

Questions

On self-hosted models.

Yes. Deploy the platform on-premise and point the assistant at a model hosted inside the same boundary, over an OpenAI-compatible endpoint. In a fully air-gapped deployment nothing crosses the boundary in either direction, and every AI feature keeps working.

Keep exploring

AI Assistant

The full trust model, the studios, and cross-module answers.

Explore

On-Premise Deployment

Run the whole platform on your own servers, up to fully air-gapped.

Explore

For Enterprise

Single-tenant governance, deployment options, and audit depth at scale.

Explore

Get started

See how Alvor works for your role

Whether you lead security, run IT, manage compliance, or sit in the C-suite - we'll show you your view.

Request DemoView Pricing
ALVOR

Security architecture management and compliance: connected into one source of truth.

Security,
Simplified.

Platform

  • Overview
  • AI Assistant
  • On-Premise Deployment
  • Security Architecture
  • Assets
  • Components
  • Dependency Mapping
  • Data Governance
  • Secure by Design
  • Security Design Review
  • Threat Modeling
  • Risk
  • Compliance
  • Policy
  • Security Management
  • Business Continuity
  • Third-Party Risk Management

Solutions

  • All solutions
  • CISO
  • Security architect
  • GRC lead
  • Engineering leader
  • Startups
  • Mid-Market
  • Enterprise
  • Regulated & Sovereign

Frameworks

  • ISO 27001
  • SOC 2
  • NIST CSF
  • HIPAA
  • GDPR
  • PCI DSS
  • Essential Eight

Company

  • About
  • Advisory
  • Compliance
  • Blog
  • Security
  • Pricing
  • Compare

Legal

  • Privacy
  • Cookie Policy
  • Terms
  • Disclosure

© 2026 Alvor Pty Ltd · ABN 40 700 022 546 · All rights reserved.

LinkedIn