Not automation. Orchestration.
How it works Security Ecosystem
The City of London financial district at night, viewed across the Thames
Trust & security

Enterprise trust,engineered in.

Alteric handles your clients' most sensitive information. We built it to the standards your firm and your regulator expect: a human approves everything before it's sent, your data is never used to train models, and it's protected by enterprise-grade security at every layer.

The foundations

Six commitments, and how each one is kept.

Six commitments govern everything Alteric does with your brokerage data. Each has been deliberately designed to meet the expectations of regulated firms where security, control and accountability are essential.

A human approves everything

Nothing is sent to a client or insurer without broker review and approval. There is no autonomous mode that emails clients, commits the brokerage or binds cover on its own.

Your data trains nothing

Your clients’ data is never used to train AI models, not ours, and not anyone else’s. What you put in stays yours.

It stays in the EU and UK

Data is hosted within the EU/UK, close to your regulator, with your brokerage keeping control over retention and access.

Encrypted and separated

TLS in motion, encryption at rest, and logical separation that keeps your data apart from every other broker’s.

Every step is logged

Every client and insurer interaction across email, call and portal is captured, timestamped and attributed. Who said what, when, and what was sent.

Built for your regulator

UK and Irish brokers answer to the FCA, the Central Bank of Ireland and UK/EU GDPR. That is the bar Alteric is built to.

Aligned to your AI policy.

Most firms now have an AI policy, and many have an approved provider to go with it. Alteric is model agnostic. If your firm has elected a provider, we work within that choice rather than asking you to make an exception to your own policy. Tell us what your policy allows and we will tell you straight whether we can meet it.

Providers firms commonly approve
OpenAI Anthropic Google Gemini Microsoft Copilot Microsoft Azure OpenAI AWS Bedrock Mistral
A historic City of London bank facade beneath a modern glass tower
Old institutions, new intelligence

The City has protected its clients for three centuries. Alteric brings the same discipline to their data.

Human-in-the-loop by default

Nothing is ever sent without broker approval.

Alteric captures the conversation, brings the relevant information together and prepares the response for the client or insurer. Then it stops.

Your team reviews, edits and makes the final decision. Only after explicit broker approval does anything leave the business.

There is no autonomous mode that emails clients, commits the brokerage or binds cover on its own. Alteric handles the preparation; the broker retains full control and accountability for every decision.

This principle sits at the core of Alteric: AI supports the broker, but the broker remains in control.

This is the control your compliance team will ask about first. We will walk them through it.

Request a demo
Data protection

Your data, protected and never trained on.

Your clients trust you with their information; you can trust us with it. Here is exactly how their data is held, where it lives, and who it stays apart from.

  • Never used to train modelsYour clients' data trains nothing. Ever.
  • EU / UK data residencyYour data stays in-region, close to your regulator. A genuine differentiator
  • Encrypted in transit and at restTLS in motion, encryption at rest.
  • Isolated per firmLogical separation keeps your data apart from every other broker's.
  • You own your dataYou decide what's stored, for how long, and when it's deleted.
AI guardrails

Guardrails that keep AI in its lane.

Alteric is deliberately kept on a short leash. It prepares work for people to check. It doesn't improvise, and it doesn't act beyond what you've allowed.

  • A human approval gate on every outbound action.

  • Grounded in your firm's own data: Alteric doesn't invent facts or take actions on its own.

  • Every draft is reviewable, with the source it came from.

  • Scoped permissions: Alteric only acts where you allow it to.

  • Full traceability: every step is logged and auditable.

The towers of the City of London, including the Gherkin, seen through a window
Built for the Square Mile

Enterprise-grade by design, so the firms that safeguard the market can trust the intelligence inside it.

Access & controls

Your data, your access, your uptime.

Access & permissions

Control who can see, draft and approve: the right people holding the right responsibilities, and nothing more.

  • Role-based access with least privilege
  • Approvals tied to the people accountable for them
  • Multi-factor authentication for your team
  • Single sign-on (SSO), on the roadmap
SSO on the roadmap

A complete audit trail

Every client and insurer interaction across email, call and portal is captured, timestamped and attributed.

  • Who said what, when, and what was sent
  • A retrievable record for compliance and complaints
  • Built in, not left to a handler to remember

Monitored, reliable infrastructure

Servicing doesn't stop, so Alteric is built for the dependable, everyday availability brokers need.

  • Monitored, with resilience designed in
  • Encryption and access controls throughout
  • Formal availability commitments, planned
Compliance & certifications

Compliance, held to the standard brokers are.

UK and Irish brokers answer to the FCA, the Central Bank of Ireland and UK/EU GDPR. That is the bar Alteric is built to, and here is exactly where each item stands today.

  • GDPR: aligned by design Self-assessed
  • UK Data Protection Act 2018: aligned Self-assessed
  • Irish Data Protection Act 2018: aligned Self-assessed
  • SOC 2 Type II: audit underway In progress
  • ISO 27001: certification targeted Planned

We're early, and we're transparent about it: the items in progress are being pursued now, and we'll update this page as each is completed.

Your security team can have all of this in writing, and a technical session before any pilot.

Request a demo
Data lifecycle & ownership

You control what happens to your data: keep it, export it, or delete it on request. When an agreement ends, we stop processing and remove your data. We never sell or share it.

How the approval gate is enforced

“Nothing sends until a broker approves” is a control, not a policy. Here is what enforces it.

01

Nothing is sent until a broker approves it

Drafts are prepared and held. No client email, insurer request or document leaves the firm without a person releasing it.

02

Your broker system is read-only until that approval

Alteric reads the policy, the cover position and the history to assemble a case. The record is written back only after a broker approves.

03

Every approval is logged with the person and the timestamp

The audit entry is written as the work happens, so a file review shows who approved what, and when.

04

There is no autonomous mode

No bulk-approve, no per-client exemption, no setting that removes the review step.

Your security team can verify each of these in a technical session before any pilot.

Subprocessors & vendors

Alteric runs on a small set of enterprise cloud and AI infrastructure providers, each bound by strict data-protection terms that flow our commitments down to them. We never sell or share your data.

Our subprocessors fall into four categories: cloud hosting, the model provider that performs drafting, call transcription, and error monitoring. A signed DPA and the current subprocessor register, naming each provider and its processing region, are provided before any pilot. We notify you in writing before a subprocessor changes.

Talk to us about trust and security.

Bring your IT and compliance stakeholders. We'll walk them through our current controls and roadmap in as much detail as you need.

  • A signed DPA and the current subprocessor register
  • A technical session on the approval gate and data flow, with your engineers
  • A pilot on synthetic or historic data, before any live client correspondence
Alteric AI · AI for insurance brokers