The governance model
Ajutant is built so that control isn’t bolted on, it runs through the whole platform. Here’s how the pieces fit.
Who gets in
Section titled “Who gets in”People sign in with their Microsoft account, from directories you explicitly trust. Access is governed by roles and capabilities, and the same capability gates both the interface and the API.
What happens in a conversation
Section titled “What happens in a conversation”Every conversation passes through guardrails, including PII detection and redaction. Answers are grounded in documents you control, with citations. Where assistants use tools, write actions can be held for approval.
What changes, and how
Section titled “What changes, and how”Changes to assistants move through drafts and versions, optionally behind approval, with a kill switch for emergencies. Everything of consequence is written to an immutable audit log.
Where your data lives
Section titled “Where your data lives”The platform runs in your own cloud tenant. Documents, conversations, and models stay under your control, with classification, lawful basis, and retention available for regulated data.
Seeing it
Section titled “Seeing it”The monitoring area and the reporting space let you see usage, cost, failures, and feedback, so governance is observable, not just asserted.