AI for organisations that work with sensitive data, without identifiable data ever leaving your control.
Faylo lets your organisation put ChatGPT-class models to work on real files. Names, BSNs, KvK and IBAN numbers are deterministically pseudonymised before a single token reaches the provider — and resolved again only inside your own tenant.
Watch a real prompt pass through Faylo
Faylo sits as a refraction layer between your team and the model: capture, refract, reason, restore. The provider only ever sees the pseudonymised middle stage.
Our contact Van Dijk Diensten B.V. (KvK 61234567) shared a record about M. de Vries (BSN 999995649). Payments and correspondence run through IBAN NL44 RABO 0123 4567 89.
Can you summarise this record and flag the main points to follow up?
The provider never receives a name, number or account it could re-identify.
- 01
Capture
Your team writes exactly as they always would — full names, BSNs, KvK and BTW numbers, IBANs. Nothing about the workflow changes.
- 02
Refract
Each identifier is detected and replaced with a stable, opaque token. The value-to-token mapping stays in a vault inside your tenant.
- 03
Reason
The pseudonymised prompt goes to the model. Because tokens are consistent, the model reasons fully about context and relationships — without any re-identifiable value.
- 04
Restore
The answer returns tokenised and is resolved locally against the vault. Your team reads a clean answer about the real client; users never see a token.
Three guarantees, designed into the pipeline
Data never leaves in the clear
Every identifier — names, BSN, KvK, BTW, IBAN — is detected and replaced before egress. The model receives tokens, never the original values.
Deterministic pseudonymisation
The same entity always maps to the same token within a session, so the model keeps full context and reasoning quality — without ever knowing who it is.
Runs in your own tenant
The mapping vault and keys live in your Azure tenant or on-premises. Re-identification happens locally; nobody else — including Faylo — can reverse a token.
You want the productivity. You can’t risk the GDPR/AVG exposure.
Pasting sensitive data into a public chatbot means sending identifiable personal data to a third country. Faylo removes the risk at the source — so the upside is yours without the liability.
- Public chatbots: names and BSNs sent abroad in the clear, with no processing agreement and no control.
- “Just don’t use AI”: your team falls behind while competitors draft, review and advise in a fraction of the time.
- Faylo: full model power on real files, with identifiers pseudonymised before they ever leave your tenant.
Runs where your data already lives
The same pseudonymisation guarantees in every deployment. You only choose where the software runs and who operates it.
Your Azure tenant
Deployed inside your own Microsoft Azure environment. Keys, logs and mappings never leave your subscription.
On-premises
Fully air-gapped installation in your own data centre, for organisations with the strictest data-residency rules.
Hosted by Faylo
A managed EU-region tenant we operate for you — fastest to pilot, with the same pseudonymisation guarantees.
See Faylo on your own files
A short pilot in your environment, with your team’s real workflows. No sensitive data leaves your tenant — that’s the whole point.