Skip to content

On-premise delivery

We rewrite your system on your floor, air-gapped, in 30 days.

We bring our own GPU servers and models, rack them inside your perimeter and run the whole migration with the network cable unplugged. Your source code never leaves the building.

Your perimeter

CodeHero appliance

  • Fine-tuned models
  • Your repository
  • Engineers on site

Built for the industries that cannot send code to the cloud.

  • Banking
  • Insurance
  • Defense
  • Government
  • Healthcare
  • Telecom
  • Energy
  • Payments

Deployment options

Every setup is covered. Pick yours.

Take the one your security team already approves. The platform, the models, the engineers and the 30-day deadline are the same in every one of them.
  • Maximum isolation

    Air-gapped room

    Our appliance on your floor, network cable unplugged. The strictest setup there is, and the one we build everything else around.

  • Your hardware

    Your data center

    Our models on your GPU servers, inside your network and behind your access controls.

  • AWS · Azure · GCP

    Your private cloud

    Deployed into your VPC with private endpoints and no public ingress or egress.

  • Our hardware

    Leased appliance

    No GPUs in-house? We rent you ours for the length of the project, and we deliver, rack and remove them ourselves.

What arrives

One appliance with everything the migration needs, preloaded.

  • GPU servers

    Sized to your codebase, racked and cabled by our engineers.

  • Fine-tuned models

    The same migration models we run in-house, with weights that stay on the appliance.

  • Offline toolchain

    Compilers, parsers, parity harness and package mirrors. Nothing to download.

  • Engineers on site

    Senior engineers with 25+ years in production software, working in your building under your badge and your rules.

Security

Built to clear your security review on the first pass.

Your security team gets these controls by default. We designed the setup to pass their checklist the first time, so the project starts on the date in the contract.
  • No outbound connections

    No API calls, telemetry, licence checks or updates. Your own network monitoring confirms it.

  • Your access control

    Our engineers use accounts you issue and you can revoke, under your logging.

  • Full audit trail

    Every model run, file change and command is logged on the appliance and handed to you.

  • NDA before day one

    Signed before we see a single line. Your paper or ours.

  • Wipe on exit

    Drives are wiped in front of your team with a signed record, or stay with you.

  • No keys left behind

    At handover we hold no credentials, no access and no copies.

On site

How an on-premise project runs, day by day.

  1. Day 0

    Ship and rack

    The appliance arrives and is racked inside your perimeter. Your team inspects it before it is powered on.

  2. Day 1

    Load and verify

    Your repository is loaded from inside your network. Your security team confirms zero outbound traffic.

  3. Days 2–28

    Migrate

    Map, rewrite and parity-check, exactly as in the cloud, with the cable unplugged the whole time.

  4. Days 29–30

    Handover and wipe

    Code, tests and documentation are handed to your team. The appliance is wiped in front of you and leaves the building.