Custeo is the control plane for confidential European AI. It places every request on a destination your policy allows, keeps working when a provider does not, and leaves a record you can hand to a regulator.
// logged / proven / in jurisdiction
A processing agreement with an American provider gives contractual protection. It does not change who has legal reach over the data. An EU region does not change it either, because control follows the provider, not the postcode.
So firms with a duty of confidentiality are left choosing between a blanket ban, a licence they cannot fully defend, and staff quietly pasting client files into public tools. When the regulator asks where a file was processed, there is no answer.
"Summarise this client file for tomorrow's hearing."
Found: national ID, case file. Privileged material.
"Draft a reply to this client about their appointment."
Found: email address, phone number. Personal, not privileged.
"Write a blog post about our new office opening."
Found: nothing sensitive. Public marketing copy.
Deep green stays home and lightens toward the edge. A fixed grammar, used the same way everywhere.
Point an application at one address. It works with the standard libraries already in use, including agent tool calling.
Set the rules in plain language, watch every provider, see cost per team, export the record.
Agents also send data to chat, email and CRM systems. The same rules apply there, and blocked calls never reach the tool.
A record per request that spans every provider, sealed so a later edit is detectable.
We do not sell compute, models or hardware. You keep your own provider contracts, and you can add or drop a provider without changing a line of your application. That independence is the point. The layer is worth having because it is not tied to any supplier underneath it.
The routing is commodity. The proof is not. Each decision is written to an append-only record, sealed so that any later edit to a line breaks the chain and is detected.
Law, accountancy, healthcare. You want your people to use AI without client material leaving, and you need an answer when a regulator asks where it was processed.
You buy control and proof over your own use.
You sell software into regulated sectors. You have customers in several countries, you cannot be down because one provider is, and you are asked for sovereignty in every deal.
You buy sovereignty as a feature for every customer, from one integration.
A single site, one kind of data, no agents, and a supplier you already trust. That firm does not need a control plane. Being able to say so is what makes the rest of this credible.
If you carry a duty of confidentiality, or you sell to people who do, we would like to hear how you handle it today.
hallo@custeo.eu