Articles
Articles

Field notes from inside a sovereign AI.

Mickai® is a Sovereign Intelligence Operating System (SIOS) that runs on your own hardware. These are long-form essays on the architecture of the Mickai SIOS, the patterns that keep surfacing in commercial AI in 2026, and the engineering choices that make sovereign intelligence possible. Written by Micky Irons, named inventor of the 104 filed UK patent applications, recorded on the UK IPO public register at numbers GB2607309.8 to GB2611702.8, GB2611885.1 onwards, GB2612762.1 to GB2612793.6, GB2613386.8 to GB2613404.9, and GB2615041.7 to GB2615043.3.

Subscribe
Get every new Mickai article by email.

Long-form essays on sovereign AI from Micky Irons. One email per article. No tracking, no marketing, no third parties. Every email includes a one-click unsubscribe link.

Prefer RSS? Subscribe at /articles/feed.xml.

Fifty brains · 25 domain, 25 operational
104 filed UK patent applications · 2,340 claims

The cooperative the field notes describe, running on the sovereign silicon substrate.

All articles

Showing 457 to 480 of 1124 articles.

8 Jul 2026 · Micky Irons

A Sovereign AI Operating System vs a Reference Architecture: Why the Difference Decides Accountability

A reference architecture is a blueprint you assemble and must prove; a sovereign operating system seals and signs every action by construction.

sovereign aiai governanceeu ai actauditaccountability
Read →
8 Jul 2026 · Micky Irons

Accountancy and Audit Firms: Client Confidentiality and On-Premise AI

On-premise sealed AI lets audit and accountancy firms apply AI to client work while confidential financials never leave the firm.

on-premise aiaudit firmsclient confidentialityauditor independencefrc guidance
Read →
8 Jul 2026 · Micky Irons

Agentic AI Needs an Audit Trail You Cannot Rewrite

When software acts on its own, the record of what it did must be sealed at the moment of action, not reconstructed afterwards.

agentic aiaudit trailsovereign aieu ai actcryptography
Read →
8 Jul 2026 · Micky Irons

AI Agents as Identities: Per-Action Permissions and Hardware-Attested Authorisation

When an autonomous agent can act on your behalf, the question is no longer what it can do but who authorised each thing it did.

ai agentsidentityhardware attestationauditsovereign ai
Read →
8 Jul 2026 · Micky Irons

AI in the Courtroom: Sovereign Intelligence for the Justice System

Justice systems can only adopt artificial intelligence if every inference is signed, sealed and reviewable long after the hearing ends.

sovereign aijusticeevidence integrityeu ai actaudit
Read →
8 Jul 2026 · Micky Irons

Air-Gapped AI for Defence and Intelligence: What Running Truly Offline Requires

Truly offline AI needs a zero-egress perimeter, model updates on signed physical media, and an audit trail any auditor can verify without a network.

air-gapped aidefence and intelligencesovereign intelligence operating systemoffline aipost-quantum audit
Read →
8 Jul 2026 · Micky Irons

Air-Gapped by Design: Why Running Inside the Customer's Infrastructure Is the New Baseline

When sovereign models run entirely inside customer infrastructure, offline verifiability becomes the proof that the loop is actually closed.

sovereign aiair-gapoffline verifiabilitydata sovereigntygovernance
Read →
8 Jul 2026 · Micky Irons

Air-Gapped Is Not the Same as Sovereign

Air-gapping keeps a system offline, but sovereignty means you own the weights, the update channel, the audit trail and the kill switch.

sovereign aiair-gappeddata sovereigntyai governancepost-quantum
Read →
8 Jul 2026 · Micky Irons

An On-Premise Alternative to Public Cloud AI That Keeps Data Inside Your Network

A genuine on-premise alternative runs every model on hardware you own, sends nothing outward, and seals each action in a verifiable offline record.

on-premise aidata sovereigntyzero-egresssovereign intelligence operating systemeu ai act
Read →
8 Jul 2026 · Micky Irons

Attorney-Client Privilege and AI: Why Law Firms Cannot Use Public Cloud Models

Sending privileged material to a public cloud AI service risks waiving privilege and breaching confidentiality, so the safe shape keeps that material inside the firm.

legal aiattorney-client privilegeconfidentialityon-premise aisovereign ai
Read →
8 Jul 2026 · Micky Irons

Can a Bank Use AI on Customer Data Without Sending It to a Third Party?

Yes, a bank can run AI on customer data on its own hardware, with no outbound path and a signed record of each access.

local ai inferencedora third-party riskbank data privacyzero-egress architecturesovereign ai
Read →
8 Jul 2026 · Micky Irons

Can We Legally Put This Data Into ChatGPT, Claude or Gemini? A Decision Framework

If the data carries legal privilege, classification, patient confidentiality or a lawful basis that forbids third-party processing, public cloud AI is off the table at any tier.

ai governancedata protectiongdprcompliancesovereign ai
Read →
8 Jul 2026 · Micky Irons

Choosing On-Premise AI for Banks and Insurers: The Audit-Logging Requirements That Matter

On-premise AI for regulated finance must log every decision, sign each record with a post-quantum signature, retain it, and let auditors verify offline.

on-premise aiaudit loggingdora complianceiso 42001banking ai
Read →
8 Jul 2026 · Micky Irons

Clinical Trials on a Sealed Substrate: Pharma AI Without Moving Patient Data

How a sovereign system runs trial analysis on operator-owned hardware, with no data egress and a signed record of every step.

clinical trialssovereign aidata residencypharmaceuticalaudit trail
Read →
8 Jul 2026 · Micky Irons

Credit Scoring Is High-Risk by Default: Sovereign AI for Lending Under Annex III

The high-risk duties on a lender running a credit-scoring system, logging, oversight and data-governance, were due on 2 August 2026 and now apply from 2 December 2027 after the Digital Omnibus deferral, yet the proof they demand is unchanged and architecture, not policy, must satisfy it, so we build now.

eu ai actcredit scoringhigh-risk aisovereign aiannex iii
Read →
8 Jul 2026 · Micky Irons

Data Provenance Is Now the Law: EU AI Act Article 10 and the Signed Lineage

The Digital Omnibus moved the high-risk data governance obligations from 2 August 2026 to 2 December 2027, yet the proof standard has not changed, so a policy PDF still will not prove data governance and only a signed lineage record can, which is why we build it now.

eu ai actdata provenanceai governanceauditsovereign ai
Read →
8 Jul 2026 · Micky Irons

Data Residency and Sovereignty in Government AI Tenders

Residency fixes where data sits; sovereignty fixes who can be compelled to access it, so a tender must require jurisdictional control and operator-held keys.

data sovereigntydata residencygovernment ai procurementcloud actsovereign ai
Read →
8 Jul 2026 · Micky Irons

Data Residency Is Not Data Sovereignty

Keeping data inside a border is a location fact, not a control fact, and the two are routinely confused in procurement.

data sovereigntydata residencysovereign aieu ai actgovernance
Read →
8 Jul 2026 · Micky Irons

DORA Is in Its Audit Phase: What Banks Must Now Prove About Their AI Vendors

The audit phase turns every AI vendor relationship into a documented dependency a bank must be able to defend to a regulator.

doraoperational-resiliencesovereign-aibanking-compliancethird-party-risk
Read →
8 Jul 2026 · Micky Irons

Energy and Water as Critical Infrastructure: AI That Cannot Be Someone Else's Dependency

For operators of energy and water, resilient AI means intelligence that runs on their own hardware and answers to no external cloud.

critical infrastructuresovereign ainis2air-gappedenergy
Read →
8 Jul 2026 · Micky Irons

EU AI Act Article 15: Proving Resilience to Manipulation, Not Just Claiming It

Article 15 asks high-risk systems to show documented evidence of resilience to manipulation, and a policy statement is no longer sufficient proof.

eu ai actarticle 15adversarial testingaudit chainsovereign ai
Read →
8 Jul 2026 · Micky Irons

The EU AI Act Goes Live on 2 August 2026: What High-Risk Deployers Must Now Prove

The high-risk deployer obligations, logging, human oversight and data governance, were due on 2 August 2026, but the Digital Omnibus now applies them from 2 December 2027. The proof standard is unchanged, so we build now: evidence, not written policy.

eu ai acthigh-risk aiai governancedata sovereigntycompliance
Read →
8 Jul 2026 · Micky Irons

Federated by Default: Intelligence Without Moving the Data

A design where sensitive records never leave each site, and only permitted signals cross the boundary, delivers shared capability without central pooling.

federated-intelligencedata-sovereigntysioszero-egresseu-ai-act
Read →
8 Jul 2026 · Micky Irons

FIPS 204 and FIPS 203 Explained for an AI Audit Trail

FIPS 204 is the post-quantum signature standard that signs an AI audit ledger, and FIPS 203 only encapsulates keys and never signs.

fips 204fips 203ml-dsaml-kempost-quantum cryptography
Read →