Your governance perimeter doesn't move.
Vonbuild runs inside your existing Microsoft 365 or Google Workspace tenant. Your SSO, your conditional access, your DLP boundary, your retention policies — inherited automatically. No new security model to validate. No parallel admin console.

Validated by the kind of person who already runs your Microsoft 365 tenant
Your identity. Your rules.
M365 / Workspace SAML.
Your policies carry over.
Your IT calendar wins.
One identity governance.
What flows where, and what stays gated.
Project scope
- Negotiation positions
- Internal redlines
- Bid pricing strategy
- Project-specific risk register
Company scope (non-sensitive)
- Supplier reliability history
- Firm precedent on public matters
- Normative defaults · approved playbooks
- Project archetypes · firm extensions
Sensitive · access-gated
- Privileged communications
- M&A / restructuring material
- Attorney-client work product
- Individual compensation / HR-sensitive
Implementation: per-node confidential flag · _filter_node_visibility() at read time · agent decides per call, never hardcoded whitelist. Project-centric today. Company-centric always-on agents = roadmap.
Different roles. Same graph. Different views.
Autonomous, supervised.
Any irreversible action waits for you.
The AI prepares. You decide.
This is the gate. There is no other path.
Every action, logged. Every approval, traced.
audit_trail.json · sample record
{
"record_id": "evt_2026-05-15_08:14:23_a7f4",
"tenant": "firm.onmicrosoft.com",
"project_id": "BR-VAR-2026-04",
"user": "[email protected]",
"user_role": "in-house-counsel",
"action": "claim_file_assembled",
"extension": "EXT-LEG-01",
"model_version": "vonbuild/legal-1.4.2",
"timestamp": "2026-05-15T08:14:23Z",
"documents_processed": 412,
"document_hashes": [
"sha256:7a4f9c2e...",
"sha256:c182be01..."
],
"scope": "project",
"confidential": true,
"approval_chain": [
{ "approver": "[email protected]", "ts": "2026-05-15T09:02:11Z", "decision": "approve" }
],
"exportable": true,
"tamper_signature": "sha256:9b22fa7e..."
}What "every approval traced" looks like.
The append-only log, in the app.
Event stream
Match your CIO's posture exactly.
Tenant-resident SaaS
- • Hetzner FSN1 · Auction-tier
- • Per-tenant Kubernetes isolation
- • Network policies between tenants
Bring Your Own LLM
- • Your provider, your contract
- • Zero-retention enterprise endpoints
- • Locally hosted models supported
On-premise deployment
- • K8s on your hardware
- • Internal-only network
- • Custom MCP for your in-house ERP
Your model. Per-task routing. Today, not roadmap.
Short answers. Full documents in the deep-dive.
Who has access to our data at Vonbuild?
Are prompts retained by the LLM provider?
Is Vonbuild trained on our data?
SOC 2 / ISO 27001 ?
What if Vonbuild ceases operations?
EU Cloud Act / US extraterritorial reach?
Book a technical session.
Bring your security team. We come with CAIQ, SIG, DPA, threat model, architecture diagrams. 60 minutes. No marketing slides — your governance questions, answered line by line.