The sovereign AI copilot for industrial enterprise operations.
On-premise. Department-isolated. ERP-native. Your data never leaves your network — and your people get answers in seconds, not days.
The industrial AI copilot market reached $3.6 billion in 2025 and is on track for $48 billion by 2036. Manufacturing enterprises are under urgent pressure to deploy AI at the operational level — without sending their data to the cloud.
Industrial AI Copilot market by 2036
26% CAGR — fastest-growing enterprise AI segment
of European CIOs increasing reliance on local AI providers in 2026
Gartner 2025
of your data leaves your network — on.it runs entirely on your own servers, by architecture, not by policy
Cloud copilots (Microsoft, SAP Joule, Cognite) require your operational data to leave your facility. on.it runs entirely on your own servers. Every query, every response, every insight stays inside your network — by architecture, not by policy.
on.it is built as a complete on-premise platform — from network perimeter to AI inference engine. Every layer is isolated, hardened, and under your control.
Single entry point · Traffic encryption · Intelligent routing · Automatic attack blocking
Enterprise SSO (Microsoft, Google, directory) · SAML 2.0 / OIDC / OAuth2 · MFA · Continuous verification · Zero new accounts
Customisable portal · Event-driven triggers · Workflow automation · No direct data access from the application layer
Composable modules · Field-level access control · Data isolation per company · RLS enforced between departments
Database · Object storage · AI inference engine — all internal, no external access. Your data never leaves your network.
Row-Level Security (RLS) is enforced at the query level — not the presentation level. The AI model cannot bypass the filter. Data exists in the platform but is never partially exposed.
| Department | Data in scope | Orders & Prices | Purchase Costs | Production Data | Stock Quantities |
|---|---|---|---|---|---|
| Sales | Orders, list prices, discounts, customer history, commercial tiers | ✓ Full access | ✗ Blocked | ✗ Blocked | ✗ Blocked |
| Production | Work orders, BOM, material requirements, progress, schedules | ✗ Blocked | ✗ Blocked | ✓ Full access | ✓ Quantities |
| Purchasing | Purchase orders, supplier data, contracts, expiry dates | ✗ Blocked | ✓ Full access | ✓ Aggregated | ✓ Quantities |
| Warehouse | Stock levels, movements, locations, batches — quantities only | ✗ Blocked | ✗ Blocked | ✗ Blocked | ✓ Full access |
| Industrial Accounting | Production costs, purchase prices, margins | ✓ Full access | ✓ Full access | ✓ Full access | ✓ Full access |
| Management | Global KPIs, aggregated cross-dept data only | ✓ Aggregated | ✓ Aggregated | ✓ Aggregated | ✓ Aggregated |
These are the conversations on.it enables every day across manufacturing operations — from shop floor to C-suite.
on.it's abstraction layer sits above your existing ERP stack. Users see a unified interface. The underlying systems are never exposed — and never need to change.
Native connector — serving the industrial base across Europe and globally. No middleware required.
RFC/BAPI · OData · IDoc — full ERP integration across all SAP deployment models.
REST API · JDBC · real-time data access without disruption to existing workflows.
Dataverse API · Power Platform connectors — full integration with existing Microsoft investments.
XML API · REST — manufacturing-native integration for Infor-based industrial operations.
Open connector — any system with a documented API. No proprietary lock-in required.
on.it connects natively to IBM AS/400 and iSeries environments — the backbone of industrial operations across Europe and beyond. Manufacturing companies with decades of structured ERP data can deploy on.it without disrupting existing infrastructure. The AI layer sits above what already works.
ISO 27001:2022 certification covers GDPR, NIS2, and EU AI Act obligations by design. Sovereign deployment means minimal risk classification under EU regulatory frameworks.
Privacy by design and by default. Data residency enforced on-premise. Field-level access control. Complete audit trail. Immediate revocation on employee departure. No cross-border data transfer.
ISO 27001 Annex A controls mapped directly to NIS2 Article 21 requirements. Cybersecurity risk management, incident reporting obligations, BCM and disaster recovery covered by architecture.
On-premise sovereign deployment achieves minimal risk classification. AI risk management system, data governance, technical documentation, and post-market monitoring all covered under ISO 27001:2022 framework.
We connect to your existing ERP stack and run a live demonstration with your own data structure — no generic demo, no cloud setup required.