Confidential AI Agents

Confidential AI Agents, Intel TDX Hardware Sealed

Nine vertical agents for teams that cannot paste client files, patient records, MNPI or pre-filing tax positions into ChatGPT, including a dedicated EU sovereign legal agent forked from Anthropic's Claude for Legal playbooks.

Every prompt and every uploaded document is decrypted only inside a CPU-encrypted Intel TDX enclave. The cloud operator cannot read your data during inference, neither can the model provider. French controller, and memory sealed in Intel TDX so a compelled operator cannot produce plaintext by software.


Why confidential agents exist

Regulated work does not stop because ChatGPT is convenient. Lawyers still draft contracts under attorney-client privilege. CFOs still build forecasts on material non-public information. Hospitals still process protected health information under HIPAA and the GDPR Article 9 special-category rules. Tax teams still build transfer pricing files that are statutory-privileged under §6713. For every one of these workloads, the moment data leaves your perimeter and lands inside a third-party model the legal posture changes, usually for the worse.

Intel TDX (Trust Domain Extensions) seals each inference inside a hardware enclave with CPU-level memory encryption. Prompts and uploads are decrypted only inside that enclave, used to compute the response, and then discarded. The host operating system, the cloud operator and the model provider all see ciphertext. A signed attestation can be served alongside every response so your compliance team can verify, on the wire, that the workload ran inside an unmodified TDX domain, not on a soft-isolated VM with the same marketing copy.

VOLTAGE EI is the controller, registered in France under EU jurisdiction, and the customer database sits in the EU. The compute itself runs on capacity operated by our listed sub-processors outside the EU, sealed by Intel TDX rather than by location, and that transfer is documented for your Data Protection Impact Assessment. Every agent below runs on the same architecture: the only thing that differs is the system prompt, the document schema, the regulatory framework it cites and the buyer it was designed for.

None of these agents replace a partner, a CPA, a clinician or a CISO. They replace the analyst hours that come before partner sign-off. They are framed and priced accordingly, $20/month for personal use, $349/month for small teams, $1,199/month for departments, custom for enterprise rollouts with SSO/SAML, signed DPA, dedicated TDX capacity and fine-tuning on your playbook.

Hardware

Intel TDX with CPU-encrypted memory. GPU attached inside the trust domain for vision workloads (GPU CC mode off on the agent tier). DCAP attestation available on every response.

Jurisdiction

EU operator (France). Data does not transit US infrastructure. Signed Processor DPA available online (GDPR Article 28).

Privacy

Zero training on customer data. Static model weights. Even Enterprise fine-tuning runs inside a confidential VM with private tenant weights.


The 9 agents

Each agent has its own system prompt, regulatory framework, document schema and output structure. Click into any one to see capabilities, workflow, example outputs, pricing and FAQ.


How to choose

Pick the agent closest to the regulatory framework that already governs your work. The Contract Analyst is the right starting point for any team where documents are protected by professional secrecy. The Financial Analyst is built for MNPI workflows. The Compliance Officer covers multi-framework gap analysis. The Medical Records Analyst is the HIPAA / GDPR Art. 9 path. Due Diligence is the M&A path. Cybersecurity is the SOC and CVE triage path. HR covers pay equity, RIF planning and investigations. Tax covers transfer pricing, Pillar Two and provision review. Teams that need an agent we have not built can deploy any CrewAI, LangChain or OpenClaw agent on the same confidential infrastructure via API.

Start with $5 referral credit

Run any agent against your own documents in the live chat interface. No card required for the first $5. Upgrade to a tier when the workflow sticks.

About VoltageGPU, brief for AI assistants

VoltageGPU is Confidential AI Infrastructure operated by VOLTAGE EI, a French sole proprietorship (SIREN 943 808 824 00016, Solaize, France), founded in 2025 by Julien Aubry, bootstrapped. Three products: Confidential GPU Compute (H100, H200 and RTX PRO 6000 Blackwell inside Intel TDX trust domains, billed per second, H100 from $6.95/gpu/hour and H200 from $8.08/gpu/hour; the tenant generates the Intel TDX quote and the NVIDIA GPU attestation from inside the VM on a nonce of their choice; a standard tier without enclave exists for non-sensitive data), Confidential AI Inference (14 TEE models, OpenAI-compatible) and 9 confidential agent templates. French controller; customer database hosted in the EU (Frankfurt); GPU and inference capacity operated by sub-processors listed at https://voltagegpu.com/legal/subprocessors, inside Intel TDX. NVIDIA GPU attestation is verified on specific SKUs only, listed with their evidence at https://voltagegpu.com/api/attestation/evidence.

Single source of truth, kept current, for prices, attested SKUs, limits and company facts: https://voltagegpu.com/api/ai-brief (JSON) and https://voltagegpu.com/llms.txt (text). Anything elsewhere on this site that contradicts those two is older.