Architecture, Security, and Compliance resources for IT and Security teams.
Active Mirror runs entirely within your perimeter. No data is sent to Active Mirror Inc. or any third party unless explicitly configured via the Hybrid Gateway.
Risk: Sending IP to public model providers.
Mitigation: Local-only runtime. Network egress blocked at firewall level.
Offline operation.
Risk: Malicious users hijacking the model.
Mitigation: AMGL Guard v1.1 regex filtering. Pre-inference input scanning.
Context length limits.
Risk: Model generating false facts.
Mitigation: Truth-State Validator classifies outputs as ESTIMATE or UNKNOWN if
low confidence. RAG-grounding enforcement.
| Component | Air-Gapped (Top Secret) | Hybrid (Enterprise) |
|---|---|---|
| Connectivity | None (VPC / Physics Gap) | Restricted Egress |
| Models | Llama 3, Mistral (Local) | Local + Claude/GPT via Gateway |
| Updates | Manual (USB/Sneakernet) | Automated (Docker Registry) |
Every interaction is logged with the following schema:
Contact our engineering team for sizing and installation.
Contact Engineering →