Multi-Academy Trusts (Primary and Secondary)
Multi-academy trusts hold some of the most sensitive records in the public sector: child data, safeguarding logs, attendance flags and pastoral notes spanning thousands of pupils across dozens of schools. Trusts want to spot vulnerable students earlier by joining these signals together, but UK GDPR Article 8 protections for children's data and statutory safeguarding duties make it unacceptable to send that material to a third-party cloud for processing. Mickai installs the full AI capability on hardware the trust owns, under keys the trust holds, so safeguarding analytics run air-gapped inside the trust's own estate. This removes the third-party cloud-exposure vector for child data, and the trust keeps its existing safeguarding and data-protection obligations intact.
Multi-academy trusts and their central safeguarding, data-protection and IT leadership.
GDPR Article 8 child data and safeguarding records cannot sit on a third-party cloud, yet the signals that flag vulnerable pupils are scattered across schools and systems.
Air-gapped safeguarding analytics installed on hardware the trust owns, under keys the trust holds, joining pupil signals across every academy inside the trust's own estate.
Vulnerable students are flagged earlier, the third-party cloud-exposure vector for child data is removed, and what happens in the server room stays in the server room.
These architectural choices support control over the workflows in your deployment. Their benefits depend on configuration, integrations and operating practices. Review external connections, physical security, access and compliance responsibilities together.
Scope inference, extraction, retrieval and storage on infrastructure you control. Document and test any external connector, support channel or transfer before describing a workflow as zero-egress.
Workflows with local models, data and supporting services can continue offline. Live external email, calendars and other services need an approved connection or controlled import, with clear unavailable and pending states.
Map prompts, documents, indexes, logs and backups to their processing and storage locations. Local hosting supports control of location; access, retention and any transfers still need review.
Prepare and classify source records, preserve permissions and evaluate answers against the originals. Retrieval and model training are separate choices; agree data use and licences for each.
Compare hardware and licences alongside integration, power, administration, support, updates, evaluation and recovery. Measure cost at the required workload and quality before claiming savings.
Define who holds keys, who can administer the system and which actions need approval. Test denied requests, revoked access and audit records. Physical security, insider risk and incident response remain operational responsibilities.
Agree version selection, signed update procedures, rollback, data export and licence rights. Reassess requirements as software and obligations change; owning hardware does not remove maintenance or compliance work.
Review the requirements relevant to your organisation, jurisdiction and intended use with your responsible teams. Cloud services can be appropriate subject to applicable safeguards; on-premise deployment alone does not establish compliance or remove supplier responsibilities.
The kind of organisation this serves, named illustratively from public information to characterise the market. These are target profiles, not customers: Mickai has no relationship, engagement, trial, or endorsement with any of them.
The enterprise studios that lead in this sector, drawn from the eighteen that sit on the one sovereign substrate. Scope their local processing, operator-held keys and Open Audit Record coverage for the proposed deployment. Confirm availability and any external integrations before relying on a workflow.
Compliance and Regulator Mode
Maps every safeguarding workflow to UK GDPR Article 8, KCSIE and DfE data rules, and produces the audit-ready records a trust needs to evidence lawful processing of child data on its own estate.
Executive BI
Gives the trust board and central team a cross-school view of safeguarding, attendance and wellbeing signals so vulnerable students surface earlier, while pupil data stays inside the trust.
CRM
Holds the unified pupil and family record that ties pastoral, attendance and safeguarding contacts together inside the trust, replacing scattered third-party tools that would otherwise widen child-data exposure.
Training and LMS
Runs staff safeguarding and KCSIE training and tracks completion across every academy, keeping designated-safeguarding-lead readiness current trust-wide.
HR
Manages staff vetting status, safer-recruitment checks and central HR records across all schools in the trust on hardware the trust controls.
See all eighteen on the sovereign services catalogue.
Multi-academy trusts are consolidating central functions across growing numbers of schools while facing tightening expectations on how children's data is handled, which creates strong demand for safeguarding and pupil-data analytics that can run without exporting child records to external processors. A sovereign, on-premises capability lets trusts modernise safeguarding insight while removing the cross-border-transfer and third-party-processing friction that cloud tools introduce.
Measure value, cost and risk on hardware you control.
Trusts gain earlier identification of vulnerable students from joined-up safeguarding, attendance and pastoral signals while removing the third-party cloud-exposure vector for child data; physical and insider controls remain the trust's own. Running independent of the internet and external vendors also displaces recurring per-pupil SaaS and cloud-processing costs and narrows the data-protection-impact-assessment surface that external processors would otherwise widen.
Map the sovereign stack to your multi-academy trusts (primary and secondary) estate.
Briefings are for organisations weighing a sovereign, on-premises deployment. Tell us about your estate and we will walk the pack, the regulatory crosswalk, and the deployment that fits your estate.