Enterprise · on-premises deployment
For chambers that can\u2019t send a single byte to the cloud

Private. Secured. On your premises.

The full LexEdge stack — apps, agents, language and vision models — runs inside your office, on hardware you own. Nothing leaves your perimeter unless you choose to send it.

0
Bytes that leave your office
100%
On-device inference for sensitive matters
14
Agents running on your hardware
Years of matter data, indexed and searchable
Chapter 01 · The hardware
Three certified options · sized to your practice

Pick the box.
We pre-load the bench, the models, your playbook.

Every option ships pre-configured. You plug in power and network (or just power, for air-gapped). The bench is online in under thirty minutes.

1 PFLOP FP4 128 GB memory 4 TB NVMe
The desk-side AI supercomputer

NVIDIA DGX Spark

Mid-firms and in-house teams (20–200 lawyers).

  • Blackwell-class GPU · 1 PetaFLOP AI performance
  • 128 GB unified memory · runs frontier models locally
  • Desktop form factor · single wall-socket deployment
  • Full bench + AI models · zero cloud dependency
For firms that handle critical / sensitive matters
Up to 275 TOPS 15-60 W 64 GB option
Edge AI · for the lawyer in motion

NVIDIA Jetson Orin Series

Solo practitioners and small chambers (1–10 lawyers).

  • Jetson AGX Orin · up to 275 TOPS · 64 GB
  • Palm-sized · fanless · 15–60 W
  • Runs the bench + retrieval offline · syncs by request
  • Carry-on luggage compliant · take it on a brief
For practitioners who travel between courts and offices
M4 / M4 Pro Secure Enclave macOS native
Apple Silicon · chamber-grade

Mac Mini · M4 / M4 Pro

Boutique chambers, advocate offices, advisory practices.

  • M4 or M4 Pro · up to 64 GB unified memory
  • Hardware-encrypted SSD · Secure Enclave
  • Runs the bench, retrieval and vision models on-device
  • macOS-native admin · familiar maintenance
For chambers already in the Apple ecosystem
Chapter 02 · The architecture
Inside the box

One stack.Three layers.Yours.

The same architecture we run in our cloud, packaged for your office. Apps and agents at the top, a fine-tuned model layer in the middle, and a retrieval and audit layer underneath — sealed, encrypted, and logged.

  • A
    Apps
    iOS, Android, macOS, Windows, Web · same workspace
  • B
    Agentic bench
    14 agents · orchestrated · fine-tuned on your playbook
  • C
    Model layer
    LLM · voice · vision · embeddings · all on-device
  • D
    Knowledge & vault
    Vector index · matter store · encrypted, audit-logged
Chapter 03 · The security envelope
Six promises in the contract

Default-deny. Always.

We start from the assumption that nothing leaves your office. You opt in to every connection, every model update, every audit export.

01
Air-gapped option
Run with zero outbound network. Every byte stays in your office.
02
Hardware encryption
AES-256 at rest, TLS 1.3 in transit, secure enclave for keys.
03
Per-matter isolation
Each matter sealed in its own vector index. No cross-matter leakage.
04
Tenant of one
Models, data, and logs never co-mingle with another firm.
05
Audit log · cryptographic
Every read, write and AI decision hash-chained for tamper evidence.
06
Bar Council–ready exports
Compliance packets generated in one click — ready for review.
Chapter 04 · Enterprise security suite
Built for the most sensitive practices

Four layers of enterprise protection.

Designed for chambers that handle M&A, criminal defence, and regulatory matters — where a single data breach is a career-ending event, not an inconvenience.

Role-Based Access Control
Granular permissions across every module
  • Assign roles — Partner, Associate, Clerk, External Counsel — per matter or firm-wide
  • Restrict access to sensitive matters by seniority, practice area, or conflict status
  • External teams see only what you explicitly share — nothing more
Secure & Reliable Data Storage
Encrypted at rest, encrypted in transit
  • AES-256 storage encryption with Secure Enclave key management
  • TLS 1.3 for all data in transit — inside or outside your perimeter
  • Optional end-to-end encryption for the most sensitive client files
Complete Audit Trail
Append-only · cryptographic · tamper-proof
  • Every read, write, AI decision, and login hash-chained into an immutable log
  • Identify who accessed or modified any file, and exactly when
  • One-click compliance export — Bar Council and regulatory-ready
Defense-Grade Mobile Security
Defense-grade chip-to-app protection
  • Secure boot, real-time kernel protection, and hardware-backed key management — enforced at the chip level
  • LexEdge runs in a fully isolated container — separated from personal apps and data on every device
  • Remote wipe and device lock available via MDM; consistent protection across mobile and desktop
Chapter 05 · AI gateway & observability
Included with every enterprise contract

Everything you need to govern AI at scale.

Every enterprise deployment ships with a full AI gateway — logging, moderation, budget control, PII redaction, and shadow-AI visibility out of the box. No third-party vendor required.

Complete Request Logging

Every prompt, every response, every token — captured for every LLM call across all apps, models, and providers. Append-only. Tamper-proof.

append-only storefull-text searchpaginated export
PII Detection & Redaction

Automatically detect Credit Cards, SSN, Passport numbers, emails, and medical records before they leave your network. App-level and network-level.

GDPRHIPAAreal-time
Content Moderation

4-layer AI consensus across multiple moderation models. 95–98% accuracy. Block or flag by severity threshold.

jailbreak detectiontoxicityprompt injection
Granular Budget Enforcement

Set spending limits per tenant, per user, per model, per hour. Automatic budget freeze with fallback routing. Real-time cost alerts via webhook.

per-userper-tenantper-model
Network-Level Visibility

See all employee AI usage — sanctioned and shadow — unified alongside your API traffic in a single pane of glass.

network-levelshadow AIunified view
Semantic Search

Find any past prompt semantically. Detect duplicate questions, similar interactions, and abuse patterns using vector embeddings.

vector searchembeddingsembeddings
Pre-Computed Analytics

Dashboards under 100ms response. Background jobs pre-compute daily, hourly, and 30-day analytics across 1,000s of tenants. No lag, no spinning.

<100ms APIcron jobsmaterialized views
Full Audit Trail

Append-only audit event store with REST API. Document downloads, searches, logins, API calls — all captured, indexed, and available for export.

SOC 2CSV exportS3 backup
Schedule-Based Access

Restrict AI access to working hours. Push time-based block rules automatically. After-hours access denied at the network level.

policy synctime-based rulesnetwork enforcement
Chapter 06 · The roll-out
From signature to live in twenty-one days

Four phases. One dedicated team.

01
Discovery
A two-week assessment of your matters, volumes, regulatory exposure and existing IT estate. We propose a hardware mix and a roll-out plan.
14 days
02
Install
Hardware shipped or hand-delivered. Pre-configured with the full LexEdge bench, your playbook and a starter knowledge base.
1 day on site
03
Train
Lawyers and staff onboarded with a half-day workshop. Migration concierge digitises the first batch of paper.
5 days
04
Operate
Quarterly business reviews. Continuous model updates pushed to your device. Dedicated solutions architect on call.
ongoing
Book a discovery call

Forty-five minutes. Honest answers.

Tell us about your matters, your team and your regulatory exposure. We tell you whether enterprise on-prem makes sense — and if it doesn\u2019t, we say so.

NVIDIA DGX Sparkships in 6 weeks
NVIDIA Jetson Orinships in 2 weeks
Mac Mini · M4 / M4 Proships in 5 days
Air-gapped optionall three
FAQ
Frequently Asked Questions

Questions lawyers ask before trying LexEdge.

Ten practical answers for this page, marked up with FAQ schema for search engines.
Can legal AI run on-premise?

Yes. LexEdge Enterprise runs the entire stack — apps, agents, language, vision and embedding models — on hardware inside the firm's own office. An air-gapped configuration operates with zero outbound network connection, so no data leaves the premises.

What hardware is needed?

Three certified options: an NVIDIA DGX Spark with 128 GB unified memory for firms of 20–200 lawyers; an NVIDIA Jetson Orin at up to 275 TOPS for solo practitioners and small chambers; or a Mac Mini M4 or M4 Pro with up to 64 GB for boutique chambers. All ship pre-configured.

How long does deployment take?

Twenty-one days from signature to live: a fourteen-day discovery assessment, one day of on-site installation, five days of training and migration, then ongoing quarterly reviews with a dedicated solutions architect.

How are matters isolated?

Each matter is sealed in its own vector index with permissions enforced at query time, so there is no cross-matter retrieval. Models, data and logs for one firm never co-mingle with another firm's.