Architecture

Cloud. Keys. Data.

Each deployment gets its own cloud environment, database, and document store. Your customer's data stays in their account — under their keys.

How it fits

Your app. Our engine. Their cloud.

web

Your app

Your brand

cloud_lock

Customer cloud boundary

Customer cloud

hub

You Can Ask

document_scannerDocument scanning
manage_searchSearch
psychologyAI models
fact_checkAudit logs
cloudTheir infrastructure

keyCustomer-owned keys & storage

Principles

Why teams choose this model

One product line to maintain. Isolated instances for every buyer. Your brand and systems on top.

code

One codebase, many instances

Same monorepo (Frontend, Backend, Payment.API) for every customer. Bold ships one product line; each buyer gets an isolated instance — not a fork.

database

Code → data

Vertical vocabulary and tools live in configuration and seed packages — not hard-coded product forks. Rebrand by swapping data.

psychology

Tool-driven agent

The model picks deterministic tools — search, checks, your connected systems — so answers stay grounded in approved sources, not free-form guesswork.

cloud

Tier = ownership model

Sandbox and Enterprise on Bold infra; Dedicated Stack in the customer’s GCP with BYOK. Price isolation and SLA — not feature flags alone.

How it’s structured

Platform, instance, your brand

Bold runs the engine. You own the customer experience and — on Dedicated Stack — the cloud.

  1. 01

    YcaOS platform

    Monorepo, tool gateway, ingest pipelines, admin APIs, CI/CD. Same git tag and image for every customer — Bold owns this layer.

  2. 02

    YcaOS instance

    One deployment profile: Cloud Run, PostgreSQL, vector store, secrets, optional Frontend/Payment. Terraform provisions; Ansible bootstraps; GitHub Actions deploys.

  3. 03

    Customer surface

    Brand, vertical, documents, users, billing. What end customers see — under your name, on the instance you sell.

Integrations

Your systems, our orchestration

Ship document intelligence out of the box. Connect ERP, procurement graphs, or CRM through the same agent — without a custom product build.

build

Platform intelligence

Document search, chat, and orchestration ship with every instance — one shared product line Bold maintains for you.

tune

Your vertical

Turn on the tools that match the industry you sell into. Rebrand construction to procurement without forking the codebase.

hub

Your systems connected

ERP, graphs, and internal APIs plug into the same agent. You keep the systems of record; we orchestrate the conversation.

Go-live path

From contract to production instance

We provision, bootstrap, and deploy — you keep brand, data, and cloud ownership per tier.

cloud

Terraform

Provisions GCP project, Cloud Run, SQL, GCS, IAM

arrow_downward
settings

Ansible

Bootstraps schema, secrets, seed, configs

arrow_downward
rocket_launch

GitHub Actions

Builds one image; deploys every instance

arrow_downward
tune

Configure

Brand, tools, and vertical — no code fork

What buyers get

Ready for real customer workloads

Chat, document search, customer tools, and audit trails — sized for Enterprise and API-led products.

hub

Connect your backends

Customer tools run in their environment. The agent calls out securely — your graph and ERP never move onto Bold infrastructure.

manage_search

Document intelligence

Upload once, answer in chat. Search and structured retrieval stay on the platform so every instance feels production-ready.

badge

Your identity, your rules

Use Bold auth on managed instances, or bring the customer’s IdP on API-led products — without mixing login stacks.

monitoring

Audit-ready by default

Every model call can be traced. Version endpoints expose what is running for change-control and buyer diligence.

Commercial tiers

Sandbox, Enterprise, or Dedicated Stack

Choose how much isolation and cloud ownership you need. API-only deployments fit when you already have a customer UI.

science

Sandbox

Shared demo instance on Bold infra — time-limited grants, preloaded seed, hard caps. Sales-assisted path to production tiers.

  • done14–30 day trial
  • doneDemo seed only
  • doneUpgrade path to production
apartment

Enterprise

Dedicated instance on Bold-managed cloud — full branding, customer seed, optional Stripe. Standard SLA (~99.5%).

  • done€5k–25k setup · €2k–8k/mo
  • doneFull branding + seed
  • doneBold-operated stack
shield

Dedicated Stack

Customer GCP, BYOK, network boundaries, and your own connected systems. Premium SLA target (99.9%) for regulated buyers.

  • doneAnnual license + implementation
  • doneBYOK LLM + vector
  • doneYour tools in their VPC

Already shipping your own product UI? Use the API tier — Backend intelligence under your brand, with your identity provider.

Bring the AI providers you trust

OpenAI, Azure, Anthropic, Gemini, or on-prem — switch without rebuilding the product.

  • OpenAI
  • Azure OpenAI
  • Anthropic
  • Gemini
  • Ollama (on-prem)

Search that fits your stack

Qdrant, pgvector, or Chroma — same product experience, your storage preference.

  • hub

    Qdrant Cloud

    Production default — isolated collections, hybrid search.

  • storage

    pgvector

    PostgreSQL-native when SQL is already the compliance boundary.

  • database

    Chroma

    Local-first for sandbox and developer velocity — same abstraction.

Trust & isolation

Built for security and procurement reviews

Clear ownership of keys, data residency, and private integration paths — before the RFP checklist arrives.

  • checkOne isolated instance per customer — no shared data pool
  • checkSame product line for every buyer — faster upgrades
  • checkYour cloud and keys on Dedicated Stack
  • checkCustomer systems stay in their VPC
  • checkReady for security and procurement review
security

IAM guardrails

Unique service accounts per stack; GitHub Actions actAs scoped to the customer project; least-privilege Secret Manager.

key

Customer-managed encryption

CMEK for Cloud SQL and GCS on Dedicated Stack; Bold does not hold production keys unless contracted.

swap_calls

Private data paths

Integrations stay in the customer network. The platform calls out securely — domain systems never land on Bold infra.

Want a walkthrough for your setup?

Book an architecture review — we map VPC, secrets, and data flow against our reference deployment.