+33 (0)1 87 66 00 65 · Monday to Friday, 9am–6pm Free audit (15 min)
● Public sector — Anomaly & fraud detection

AI agent for anomaly and fraud detection: spot the weak signals, keep the human decision

Manual checks on growing volumes of data — grants, spending, declarations, case files — let inconsistencies through and take up a considerable amount of time. Your AI agent spots the anomalies and weak signals, then ranks them by risk level. Hosted in France — on local inference or an isolated resource — public data never leaves your perimeter. The AI agent flags; the public officer qualifies, checks and decides.

Hosted in France Public data protected GDPR & AI Act: governed deployment Human oversight

Updated on

Deployed in a few weeks
Anomaly detection agent · hosted in France
Review this batch of 320 benefit applications assessed this month and bring up the files to check first.
320 files analysed. 308 consistent with the documents and the scheme's criteria. 12 ranked alerts: 3 high risk (the same bank details declared by 4 different applicants), 5 medium risk (declared income inconsistent with the supporting documents), 4 to verify (missing document or borderline eligibility).
Every alert is documented and recorded — for the case officer to qualify.
⛓ Source · your business system + the files' documents
The bank details shared by 4 applicants — what makes that suspicious?
Signal to verify: the same IBAN appears on 4 applications submitted from different addresses within 9 days, with supporting documents showing similarities of layout. Recommendation: suspend payment and submit the 4 files to an in-depth check. The detection criteria are transparent and can be revised.
I am preparing a documented alert record, for your approval.
✎ Action · alert record ready for review — the public officer decides
Local inference · no data outside the EU
Data hosted in France
Sovereign by designLocal inference or hosting in France
GDPR & AI Act: governed deploymentTraceability & human oversight
TurnkeyDesigned, installed and operated for you
The public officer decidesThe AI agent flags, never penalises
✦ In brief

In an administration, a Blue Lemon Agent agent spots anomalies and inconsistencies in the data — grants, spending, declarations, case files — then ranks the alerts by risk level and documents each one to make human review easier. It runs on local inference or is hosted in France: public data is never exposed to a foreign service, architecture designed to reduce exposure to extraterritorial legislation, location alone not being enough to guarantee immunity. The AI agent does not penalise: it flags; qualification and decision remain strictly human. A high-risk use within the meaning of the AI Act: reinforced human oversight and traceability.

100%
hosted in France in the target architecture
0
transfer outside the EU in the target architecture
8
uses ready to deploy on this scope
0
decision taken without human approval

Reference points describing our offer, not results measured at a client. The scale of the gain is confirmed by a pilot on your own scope.

The context

Why anomaly detection matters to administrations — and why they hesitate

The volumes of files and data are rising, but the headcount available for checks stays constrained. Targeting the verifications becomes essential — without entrusting sensitive public data to a foreign service, and without letting a machine decide on a penalty.

! The issue

The administration has to guarantee the proper use of public funds and equal treatment, while facing volumes that manual checking cannot fully cover. Yet most consumer AI solutions amount to entrusting users' personal data, benefit amounts, declarations and supporting documents to a third party, often hosted outside Europe and subject to the Cloud Act.

Our answer

AI is only of interest to an administration if it is sovereign and confidential by design. Local inference or an isolated resource hosted in France, transparent and revisable detection criteria, systematic human oversight: the AI agent ranks the alerts, but qualification and decision stay reserved to the public officer. The aim is not to penalise automatically, but to concentrate checking time where the risk is highest.

The decisive point

Protecting public data: sovereignty & compliance

An administration handles users' most sensitive data. Here is how the architecture of our agents protects it, file by file.

Local inference

The agent can run on a machine belonging to the authority: no data leaves the network, nothing passes through a cloud.

Hosting in France

Otherwise, a dedicated and isolated resource, hosted in France under French law — your data: processing and access within the European Union targeted by the architecture.

Reduced extraterritorial exposure

As regards public data, exposure to the Cloud Act and FISA 702 is reduced by design; location alone does not guarantee immunity.

One isolated resource per administration

No pooling of public data: an environment strictly dedicated to your organisation.

Encryption & controlled access

Encryption in transit and at rest, role-based access (RBAC), strong authentication and logging.

AI Act: governed deployment

A high-risk use: the agent only flags; no penalty is automated; traceability and human oversight from end to end.

What depends on the architecture chosen These points are not general guarantees: they are settled deployment by deployment, in the quotation.

  • The applicable location is that of the architecture set out in the quotation and verified before commissioning.
  • Local execution is announced only for the configuration explicitly described and accepted in the quotation.
  • The applicable isolation depends on the deployment mode set out in the quotation; no dedicated isolation is presumed.
  • The encryption mechanisms in transit and at rest, their components and key management are those documented for the architecture chosen.
  • Roles and permissions are configured and accepted for the identities and systems actually connected.
  • The events logged, their content, their retention period and who may access them are defined for the deployment chosen.
For the most sensitive data, SecNumCloud and HDS options are available depending on your requirements. A single architecture is designed to answer both the GDPR and extraterritorial exposure. Designed for deployment in line with the GDPR and the AI Act, after the processing, roles and context-specific risks have been assessed.
Demonstration

See the agent at work

4 real situations, taken from those that come up most often. Pick one: the exchange unfolds as it would in your organisation.

A scripted demonstration. These exchanges show how the agent behaves — its sources, its refusals, what it leaves to your teams. Nothing is sent from this page, no model is queried here, and the matters named are fictional. That is precisely what we promise your data.
The behaviours shown here — monitoring, automation rules, routing and reminders — are configured with you during deployment, from your tools, your rules and your thresholds.
The architecture points named in these exchanges — location, local execution, isolation, encryption, role-based access, logging — are not a guarantee attached to the demonstration: they are those of the architecture set out in your quotation, and verified before commissioning.

Anomaly detection agent · hosted in France
Four flags this morning, and three concern the system itself rather than any file.
· One criterion is producing four times as many flags as in April, although file volumes have not moved. 47 flags this month against 11.
· 31 flags from this quarter have never been dealt with and remain displayed on the files concerned.
· Three officers have hidden the same criterion from their view. None explained why, and nothing asked them to.
· One file shows a date inconsistency that no existing criterion covers: a document dated after the decision it supports. morning-watch_4-flags.pdf4 flags · 3 about the system
⛓ Source · flag log, criteria settings, display preferences, files
The criterion that ran away — what happened?
The criterion did not change. The data it reads changed format on 12/06.
What the criterion does: it flags files whose proof of address is dated more than three months before the filing date.
What changed: since the update of 12/06, your system records that date as day/month instead of month/day for documents uploaded online. A proof dated 03/07 is read as 7 March.
What that produces: 36 extra flags in two months, all false positives, all on files submitted online.
What it costs beyond wasted time: thirty-six residents were looked at more closely for no reason at all. That is the real damage, and it does not show in the system's statistics.
What I have already prepared: the fix to the criterion is written — a date reading that accepts both formats — and I have run it back over the two months elapsed: it produces none of the 36 flags, and removes none of the others. The batch of 36 files to clear is assembled, with the shared cause demonstrated. Bringing it into force is signed by the scheme owner — that is what makes it dated, traced and contestable. Approve it, and the criterion is fixed tonight; until then I count every day the residents the format adds. criterion_36-false-positives.pdf47 flags · 36 caused by a date format
⛓ Source · criterion settings, date format before and after 12/06, 47 flags
How did you spot all that? And who do you tell?
I read only what you have opened to me: the flags produced and what followed them, the criteria settings and their dates, the data each criterion reads, and — because it is information and not surveillance — the fact that a criterion is hidden by several officers.
Routing follows your organisation: the runaway criterion to the scheme owner, with the 36 files to clear; the 31 untreated flags to their case officers; the hidden criterion to the owner, without naming the officers — three people hiding the same criterion say something about the criterion, not about themselves; the date inconsistency to the head of service, as a proposed new criterion.
With a chase: 24 h on the runaway criterion — every day adds residents looked at for no reason; 7 days on the rest. Then a monthly summary to the owner: by criterion, never by officer or by resident.

Three things that hold, and they are strengths. My access is yours: opened role by role, logged line by line, withdrawn on a word — nothing leaves your walls and you know at any moment what I read. The decision stays with the service: no file suspended, no application refused, no score on anyone — and I hand you each call in minutes, with the full case, quantified and reasoned. What the checks catch, I tell you: all 4,200 files of the year pass before the 14 criteria on the day they are filed, where a sample check looks at a fraction only — and every month I bring you, with figures, the criteria to narrow and the ones that are missing.
✎ Proposal · watch and chases to be configured — you set the thresholds
Local inference · no data outside the EU

Your case is not here? That is exactly what a 15-minute conversation is for. Book the free audit

Use cases

The facets of anomaly detection in the public sector

Each use corresponds to a facet of the agent we deploy. All of them work in support: the AI agent flags and ranks, the public officer qualifies and decides.

Included in your agent The 8 capabilities essential to this promise are included, at no extra cost.
From 1,050 € incl. VAT / month

Anomalies on benefit applications

Spotting inconsistencies, duplicates and missing documents on benefit and allowance files, before payment.

Ranking by risk level

Classifying alerts (high risk, medium, to verify) to target checks where they matter most.

Documenting the alerts

Producing, for every alert, a recorded and reasoned file that eases human review and decision-making.

Checking public spending

Detecting duplicate payments, atypical amounts and consistency gaps in spending and payment orders.

Business data analysis

Cross-checking and querying the data to bring out weak signals and atypical trends.

Consistency of assessment files

Checking the completeness and consistency of benefit files before approval by the officer.

Transparent & revisable criteria

Explicit, adjustable and auditable detection rules, to limit false positives and bias.

Traceability & human oversight

Logging of alerts and decisions, compliant with the reinforced requirements of the AI Act.

Controls and safeguards These 5 controls are built into the agent: they frame what it does, whatever plan you pick. They are not chosen and are not added to your order.
Human validation, exceptions and escalation Prepare without deciding: sourced rules, supporting documents, anomalies and explanation Guarantee the decision, signature, recourse and responsibility of the public official Record versions, access, criteria, actions and notifications Test for bias, false positives, fundamental rights and continuity of service

Need to go further?

These agents handle a different business process, with their own owner and their own price. They are added to this one.

Does your need fall outside this?

In 15 minutes we identify the agent that will give your staff the most time back — without oversizing the project.

Book the free audit Build your agent
The gain

How much time can an administration win back?

By automating the review of the data and the ranking of alerts, an administration can concentrate its checking time on the files that are genuinely at risk — instead of verifying at random or by sampling.

Reviewing a batch of files to target the checks
Today · done by hand
Prepared by the agent, to approve
Anomaly detection on a file
Today · done by hand
Near-instant
Documenting an alert
Today · done by hand
Prepared by the agent, to approve
Qualitative, non-contractual comparison: the proportions shown illustrate the shift of the work towards review, they represent no measurement. Every output of the agent is reviewed and approved by a competent person.
How it works

The stages of your AI agent project

1

Audit & scoping

15 minutes to target the use case with the best return.

2

Quote or direct sign-up

A catalogue offer is bought online; a specific need gets a costed quote.

3

Design

We design the agent and its guardrails.

4

Integration & testing

We connect your tools to the agent, which is itself hosted in France.

5

Rollout

Going live and training your team.

6

Operation

Continuous supervision and improvement.

Pricing

Three options, one agent

An anomaly and fraud detection agent (alerts, ranking, documentation), installed and operated for you. Choose according to how you work. Prices adapted to the public sector — annual subscription, the time it takes for the gains to settle in.

Agility

Setup + controlled subscription

14,405 € incl. VAT setup
then 1,050 € incl. VAT/month — you invest at installation and pay a reduced subscription. Ideal for keeping the cost under control over time.
  • Installation, configuration and training for your teams
  • Operation, human oversight, updates and support
  • Sovereign hosting in France, a dedicated and isolated resource
Order →
The simplest Serenity

All inclusive, no setup fee

1,850 € incl. VAT /month
all inclusive, immediate start. No upfront investment: a single subscription. Ideal for starting quickly and simply.
  • Setup included (installation, configuration, training)
  • Operation, human oversight, updates and support
  • Sovereign hosting in France, managed end to end
Order →
100% Sovereign

On site, you own it

19,901 € incl. VAT setup
then 1,305 € incl. VAT/month · + hardware from 2,989 € (one-off purchase, in addition) — a sovereign computer installed on your premises, maintained remotely. Models run locally, your data returned at the end of the contract. 36-month commitment.
  • Hardware installed on your premises (you own it)
  • French / European AI models run locally
  • Secure remote maintenance (Pro support included)
Order →
Not included in the packages: AI consumption (model tokens), re-invoiced at real cost with no margin, and tracked in real time in your client area. Maintenance and supervision subscription for an initial term of 12 months for the Agility package, 24 months for the Serenity package and 36 months for the 100% Sovereign package, renewable; support levels (SLA 72 h / 24 h / 4 h) optional. Bespoke development, additional integrations or exceptional volumes are quoted separately. Support Monday to Friday, 9am to 6pm. Prices include VAT at 20%: as a public body that is not VAT-registered, you cannot reclaim it.
AI model: none of the AI models offered currently carries a fixed surcharge. When the selected model carries a cost, that cost is shown when you choose it, before you order, and re-invoiced at the cost incurred, with no mark-up; usage is billed at the publisher's price. Publishers' prices are published in US dollars: the amount re-invoiced is the amount in euros actually borne by Blue Lemon Agent on the publisher's invoice, at that invoice's exchange rate, with no commission or mark-up.
Included components and additional components Components included in the base offer: the Blue Lemon Agent software foundation, the AI models listed in the order journey, the standard channels (Microsoft Teams, Slack, WhatsApp Business, email, website chat, calendars, Microsoft 365 / Google Workspace, file storage, market VoIP telephony, professional social-media pages and accounts, Google Business Profile), hosting in France for the package chosen, backups, supervision, updates and support. If adapting the AI agent to your constraints, your needs or your requests requires other paid components — a third-party publisher's software licence, paid API access to one of your applications, hosting of health data, for which French law requires an HDS-certified host (art. L. 1111-8 of the French Public Health Code), SecNumCloud-qualified hosting, a speech synthesis service, particular hardware —, they are offered to you as an option or on quotation and re-invoiced at the cost incurred; nothing is committed without your written agreement. Where the artificial intelligence model you choose entails an additional cost, that cost is shown to you before you order and re-invoiced to you at the cost incurred, with no margin.
What to expect
Go-live 2 to 3 weeks
Agent designed, channels connected, team trained.
Steady state 4 to 7 weeks
After a few weeks of real use, once the agent's behaviour matches what you expect. Indicative estimate, adjusted to the options you keep. It is not a delivery commitment.
Our commitment

Four guarantees that matter to an administration

Public data never leavesLocal inference or an isolated resource hosted in France; no user data entrusted to a foreign third party.
Data in France, under French lawExposure of public data to the Cloud Act and FISA 702 is reduced by design, that data being located and minimised in France; location alone does not guarantee immunity.
The public officer keeps the decisionThe AI agent flags and ranks; it does not penalise. No decision is automated.
Human oversight & traceabilityTransparent and revisable criteria, logging: compliant with the requirements of the AI Act.
Frequently asked questions

Your questions, our answers

Does the agent impose penalties?
No: it flags. The AI agent spots anomalies and ranks the alerts by risk level, but the check, the qualification and the decision remain strictly human. That is a non-negotiable requirement for public data.
How are false positives and bias avoided?
The detection criteria are transparent and revisable: they are explicit, adjustable and auditable. And every alert is checked by a public officer before any consequence, which limits both false positives and bias.
What regulatory framework applies?
Anomaly and fraud detection is treated as a high-risk use within the meaning of the AI Act: it requires reinforced human oversight and full traceability of alerts and decisions, guaranteed by the architecture of our agents.
Is the public's data protected?
Yes. Public data and users' personal data are sensitive: our agents run locally within your administration or are hosted in France, with the deployment objective of processing and access operated within the European Union and an architecture designed to reduce exposure to extraterritorial legislation, location alone not being enough to guarantee immunity.
Do we have to change our information system?
No. The agent connects to your existing tools (business system, document management, databases) and complements them, without imposing a migration. We adapt the integration to your environment and to your checking rules.
How does the agent document its alerts?
Every alert comes with a recorded and reasoned file: criteria triggered, data cross-checked, risk level. That documentation eases human review, guarantees traceability and makes every alert explainable.
How long does it take to deploy an agent?
A few weeks as a rule, after a free audit that identifies the most relevant checking scope, then a phase of design, integration and testing before going live and training your officers.
Let's talk

Let us estimate the potential in your administration

A conversation to identify the checking scope with the best return — hosted in France, supervised, the public officer keeps the decision.