Seven controls, seven sources of guidance — one map
UK guidance on AI and confidential data converges on a small set of expectations: keep identifiable data out of public tools, minimise what providers receive, stay accountable, and keep evidence. This table maps each NeutralAI control to the guidance lines it addresses. Lines are paraphrased for brevity — the verbatim quotes and source links live on each guidance page.
Mask before send
Detected identifiers replaced on supported inputs before model submission, using the configured local or gateway path.
Reversible vault (15-minute TTL)
Tokens can be restored through the configured local or gateway path; encrypted gateway mappings expire under the retention policy.
Audit trail
Category-level masking events logged with policy and timestamp — no raw PII in the log.
Whitelist & tenant policy
Firm-approved terms and masking policies applied to supported AI tools and integrations.
BYOK
Provider BYOK uses customer-owned keys and contracts. Contact our sales team to confirm plan availability.
On-prem / private deployment
The gateway can run inside the firm’s own environment or VPC.
SSO & access control
OIDC/SAML SSO, MFA posture, and role-based access for admin surfaces.