+33 (0)1 87 66 00 65 · Monday to Friday, 9am–6pm Free audit (15 min)
Understand · Sovereignty

Sovereign AI: your AI agents hosted in France, a deployment governed with regard to the GDPR

Entrusting your customer files, your contracts or your HR records to an AI service hosted on the other side of the world means accepting that they escape European law. Sovereignty is not a marketing argument: it is the condition for deploying AI without exposing what your company holds most precious — its data.

Sovereign AI

A sovereign AI is an artificial intelligence system whose data and processing stay in France and in the European Union (GDPR, AI Act). For the most sensitive data, sovereignty is reinforced by SecNumCloud-qualified hosting or 100% local inference — architecture designed to reduce exposure to extraterritorial legislation, location alone not being enough to guarantee immunity.

In brief

In brief — a sovereign AI is an artificial intelligence whose models, infrastructure and data remain under European jurisdiction. In practice, your AI agents run locally or are hosted in France (EU, GDPR); with local inference or SecNumCloud-qualified sovereign hosting, the architecture is designed to reduce exposure to extraterritorial laws such as the American Cloud Act, without that configuration alone guaranteeing immunity.

Why AI sovereignty has become a real issue

Almost all the major consumer AI services are published by American companies. Using them means routing your data through infrastructure subject to United States law. As long as it is drafts with nothing at stake, the risk is low. But as soon as an AI agent handles confidential information — customers' personal data, trade secrets, medical records, legal documents — the question of control becomes central. Who can access that data? Under which jurisdiction? What happens if the supplier changes its terms, raises its prices or closes a service?

Sovereignty answers those three concerns: confidentiality (your data cannot be read by a third party), compliance (you meet the GDPR without elaborate legal arrangements) and control (you do not depend on a foreign platform you do not govern).

The Cloud Act: why your data is not safe elsewhere

The Cloud Act is an American law passed in 2018. It allows the United States authorities to require an American provider to hand over the data it controls, wherever in the world it is stored — including in a data centre located in Europe. In other words, choosing the “European region” of an American host is not enough: what counts is the nationality of the provider, not only the location of the server. It is one of the reasons why the Court of Justice of the European Union's Schrems II ruling weakened, in 2020, transfers of personal data to the United States. A genuinely sovereign architecture aims to reduce that risk rather than remove it as a matter of principle: it requires checking, for the configuration chosen, whether any actor in the chain — contracting entity, provider, subcontractor, operator, holder of the encryption keys — is subject to an extraterritorial law. Until that check has been made and written down, immunity cannot be asserted.

GDPR: what compliance really demands

The GDPR does not, in itself, require your processing to be hosted in France. But it strictly frames transfers of personal data outside the European Union, which call for heavy and uncertain legal guarantees. Hosting in France simply removes that transfer problem. The regulation also requires data minimisation (processing only what is necessary), a clear legal basis, traceability of access and the ability to honour individuals' rights. Our agents are designed along these principles from the outset (privacy by design), which turns a regulatory constraint into a commercial argument towards your own customers.

Local inference or hosting in France: two sovereign routes

There are two ways to guarantee sovereignty, and we offer both:

In both cases, the deployment objective is that processing and access stay within the European Union. The absence of any transfer or of any access from a third country is asserted only for a configuration whose flows, administration access and subcontracting chain have been verified.

  • Local inference — the agent runs on a machine you own (on your premises). The processing is designed to stay on your network. This is the maximum level of confidentiality, ideal for the most sensitive data.
  • Hosting in France — we host the agent on our machines located in French data centres. You have no hardware to manage, and your data stays on national territory, under European law.

Sensitive data: the HDS hosting requirement, SecNumCloud and the sectors concerned

Some activities handle particularly protected data and require a higher level of security:

  • Health — health deployment on quotation. The target architecture provides for hosting suited to health data, which French law requires to be entrusted to an HDS-certified host. Before any go-live, BLA checks the host chosen, the HDS certificate in force, the activities it covers, the subcontractors, the places of processing, remote access, retention and contractual responsibilities. Until those elements are in place, the offer is not directly orderable: write to us to study your health deployment.
  • Public sector & strategic data — SecNumCloud qualification from ANSSI, the French national cybersecurity agency, the highest French standard for trusted cloud.
  • Legal — lawyers' professional secrecy: a legal assistant cannot expose case documents to a third party.
  • Finance & accounting — confidentiality of financial data, handled by an accounting agent or a financial analysis agent.

How we guarantee the sovereignty of your AI agent

Depending on the architecture chosen, the agent can be deployed on an isolated resource hosted in France, with encryption, role-based access and logging. The host, the subcontractors, the places of processing, any transfers and the measures actually included are set out in the quotation and in the evidence register.

  • Hosting in France (or local inference on your own premises), with the deployment objective of processing and access operated within the European Union.
  • Dependence on a provider subject to the Cloud Act is ruled out by design; the host chosen, its subcontractors and the laws applicable to them are named in the quotation.
  • A data processing agreement carrying the obligations of Article 28 of the GDPR, encrypted access, logging and least privilege.
  • HDS / SecNumCloud options for regulated data.
  • Reversibility: your data and your configuration remain yours, retrievable at any time.

Sovereign AI vs American AI service

  • Location of the data: France / European Union — vs — United States or multiple regions
  • Applicable legal framework: GDPR, European law — vs — Subject to the Cloud Act
  • Possible access by a foreign authority: reduced by design, checked configuration by configuration — vs — Possible
  • Health / sensitive data: HDS / SecNumCloud available — vs — Rarely suitable
  • Reversibility and control: contractual — vs — Depends on the provider

Three levels of sovereignty

The right level depends on how sensitive your data is — not on rhetoric. Here are the three tiers we offer.

  1. Hosted in France (EU, GDPR ) Your data and your processing stay in France, on a resource dedicated to and isolated for each client. This is the foundation of the Agility and Serenity packages.
  2. Reinforced sovereignty — SecNumCloud-qualified hosting  As an option, sovereign hosting qualified SecNumCloud places your processing under an architecture designed to reduce exposure to extraterritorial legislation, location alone not being enough to guarantee immunity  — the answer for sensitive data and regulated sectors.
  3. 100% local — the « 100 % Sovereign » package  The AI models run on your hardware, on your premises, with no network egress (local inference ): maximum sovereignty, no dependence on a third-party host.

Our sovereignty safeguards

Hosting in FranceA resource dedicated to and isolated for each client, operated from France. No training data shared between clients.
GDPR & AI ActRecord of processing activities, minimisation, retention periods, reversibility. Anonymisation filter ahead of any external call.
The agent assists, the human decides.No automated decision: the agent prepares, proposes and records; approval stays human.

Go further

FAQ

Frequently asked questions

What is a sovereign AI?

A sovereign AI is an artificial intelligence whose models, infrastructure and data remain under European jurisdiction. In practice, your AI agents run locally or are hosted in France (EU, GDPR); with local inference or SecNumCloud-qualified sovereign hosting, the architecture is designed to reduce exposure to extraterritorial laws such as the American Cloud Act, without that configuration alone guaranteeing immunity.

Does the GDPR require AI to be hosted in France?

No: the GDPR does not require a French location, but it strictly frames transfers of data outside the European Union. Hosting in France removes that transfer risk and markedly simplifies compliance, particularly since the Schrems II ruling weakened transfers to the United States.

What is the Cloud Act and how does it concern me?

The Cloud Act is an American law of 2018 that allows the United States authorities to require an American provider to give access to the data it controls, wherever in the world it is stored. If your AI agent relies on an American service, your data may fall under it, even when hosted in Europe.

Can I use a sovereign AI for health data?

Yes, and health deployment is on quotation. For health data, French law requires the host to be HDS-certified: the requirement is settled with you at scoping, before any go-live. BLA then checks the host chosen, the certificate in force, the activities it covers, the subcontractors, the places of processing, remote access, retention and contractual responsibilities; until those elements are in place, the offer is not directly orderable. For state or regulated data, a SecNumCloud qualification from ANSSI is possible. These levels belong to a reinforced security framework in France.

Is a sovereign AI less capable?

No. Open models today reach a level that is amply sufficient for most business uses. For very demanding needs, a more powerful model can be hosted in France on dedicated infrastructure, without giving up sovereignty.

What is SecNumCloud-qualified hosting?

SecNumCloud is the security qualification awarded by ANSSI, the French cybersecurity agency, to trusted cloud hosts whose framework aims to limit exposure to non-European laws. It is the highest sovereignty standard in France. It is not mandatory for everyone: it is required of certain public bodies and operators, and remains a choice for others. We offer it on quotation, because its price depends on the qualified provider chosen, the volume of resources and the commitment period.

Can the US CLOUD Act reach my AI agent's data?

The CLOUD Act is a United States law allowing US authorities to demand access to data held by providers subject to US law, even when stored outside the United States. The test is therefore not where the server sits, but the provider's nationality. Sovereign French hosting, with a provider not subject to US law, reduces that exposure. Calling it immunity requires having checked the contracting entity, its subcontracting chain, remote access and who holds the encryption keys.

What is an air-gapped system?

An air-gapped system has no possible outbound connection: it runs entirely disconnected from the internet. It is the strongest protection against data exfiltration, and it is reserved for the most sensitive environments. In return, updates cannot arrive over the network: they are carried out by us, under control.

What is encryption at rest?

"At rest" means data stored on disk, as opposed to data travelling across a network. Encrypted, it stays unreadable without the keys — managed with you — even if the medium is stolen, copied or seized. That is what separates a lost disk from a data breach.

What does it mean to run an AI model locally (local inference)?

Inference is the moment the AI model "thinks" to produce an answer. Locally, that computation runs on a machine you control — on site or on an isolated resource — and your data never leaves for an external service. That is the substantive difference from an agent that relays every question to a third-party vendor's API.

Who owns the AI agent on the 100% Sovereign plan?

You own the computer: it is configured and sealed at our premises, shipped to you, and it is yours. The AI agent, its settings and configurations remain the property of Blue Lemon Agent; you hold a personal, non-exclusive right of use for the term of the contract (T&Cs art. 12). Reversibility therefore covers your data and the machine, not a transfer of the agent itself.

What is the difference between a "base" and an "instruct" AI model?

A base model has only learned to predict text: ask it a question and it continues the sentence instead of answering. An instruct variant has had further training to follow instructions and hold a dialogue. Deploying a base version where a conversational agent is needed gives a system that rambles without obeying — which is why we only make instruction-tuned variants selectable, identified by their exact artefact and version.

A sovereign AI for your organisation?

In 15 minutes, let's scope your need and the right level of sovereignty — hosted in France, supervised.