Trust & Security

Enterprise controls, on your terms.

Everything your IT team needs to sign off on EASM One: where it runs, who can see what, how answers are grounded and how it connects.

01of 05

Deployment

Your environment
  • EASM OneRuns on your servers or private cloud
  • Your recordsStay in your ERP, SIS and CRM
  • Audit logEvery answer and action, recorded
AI model providerChosen and approved with your IT team

Choose where the application runs: on your own servers, in your private cloud, or on EASM Clouds. Application services, operational databases, vector indexes and file storage sit inside that environment.

  • On-premises
  • Private cloud
  • EASM Clouds (managed hosting)

Hosting the application locally does not by itself mean local model inference. Answer generation and embeddings currently use a configured AI provider; the provider, connectivity and data terms are agreed with your IT team during deployment.

Application hosting and AI processing
Two explicit infrastructure decisions
Live flow
Institution-controlled application environmentApplication servicesAPI and dashboardWorker and integration servicesOperational storesPostgreSQL and QdrantObject storage and cacheConfigured AI providerGeneration and embeddingsConnectivity and processing termsReviewed during deploymentProviderconnectionLocal application hosting does not, by itself, mean local model inference.
Application placement, provider connectivity and data terms are scoped with the institution IT team.
02of 05

Access control

Access follows the roles you already manage. A student sees their own record, an agent sees their queue, and an administrator sees the audit trail.

  • Roles and permissions per source
  • Single sign-on with your identity provider
  • Audit logs for answers, actions and configuration changes
Access oversight and review
Identity, permissions and accountable actions
Live flow
IdentityAuthenticate the userResolve relevant contextAccess policyRole and audience scopeAllowed sources and toolsPermitted workflowRetrieve or take actionApply required confirmationReview recordControlled system boundaryAdministrators review knowledge state, source context and operational activity.Different actions need different safeguards and an accountable owner.
Identity and access rules govern the enabled workflow; review supports accountable operation.
03of 05

How answers are grounded

EASM answers from your sources, not from the open internet. Each question runs through semantic and keyword retrieval, the candidates are ranked, and only the selected passages reach the model. The answer cites them. When the context is not sufficient, EASM hands the case to a person.

  • Retrieval from your approved sources
  • Citations on every answer
  • No training on your data
The custom RAG query pipeline
Two retrieval paths, one ranked context for the answer
Live flow
QuestionUser requestIdentity and scopeRelevant source filtersSemantic retrievalDense vector searchKeyword retrievalSparse BM25 searchRank fusionWeighted RRFCombine candidatesKeep source contextRerank the candidatesCross-encoder relevance scoringSelect useful passagesExpand surrounding contextSelected source contextRelevant passagesSource and page referencesGenerate a grounded answerModel receives selected contextSource references support reviewRespond or hand overAnswer when context is sufficientEscalate when the workflow requires
Main retrieval path. Ranked passages and source context inform the answer or handover.
From institutional sources to searchable knowledge
Structure-aware ingestion and a managed retrieval index
Live flow
Institutional sourcesDocuments and PDFsWeb pages and FAQsManaged source updatesPreserve the structureHeadings and sectionsTable context and rowsChunks with source metadataDense vectorsSemantic representationSparse vectorsKeyword representationQdrant indexDense + sparse entriesSource identifiersAccess and freshness metadataCIMS manages source intake, review and index operations.Update timing depends on source change detection and configured ingestion.
Source structure and metadata remain linked to the searchable knowledge index.
Vector retrieval
A schematic view of semantic neighbourhoods
Live flow
QuestionSimilar meaningDense vectors surfaceconceptually related passages.Exact terminologyBM25 adds keyword matches.Fusion and reranking refinethe retrieved candidates.
Synthetic 2D schematic, not real embeddings. Distances here do not represent full-dimensional cosine rankings.
04of 05

Integrations and APIs

EASM connects to ERP, SIS, CRM, LMS and PBX systems through their APIs or through read-scoped database connectors, and exposes its own API for internal applications.

  • REST APIs and webhooks
  • Read-scoped database connectors
  • SIP and PBX integration for voice
CIMS
Centralized Information Management System
Live flow
Documents and policiesWeb sources and FAQsCurated institutional factsOne managed knowledge libraryOrganiseSources, topics and taxonomyReviewPublication and governance workflowsScopeAudience and access policiesMaintainIngestion state and retrieval tuningAssistantsPermitted answersRAG consoleRetrieval diagnosticsKnowledge analyticsCoverage and freshnessCentral management of information, not a replacement for every system of record.
Central management of source intake, knowledge review, retrieval and audience rules.
05of 05

Data residency

Deploy in Pakistan today. For Gulf clients, hosting in the UAE or Saudi Arabia is scoped per project to meet local requirements.

  • Pakistan
  • United Arab Emirates
  • Kingdom of Saudi Arabia
Book a presentation

Walk your IT team through EASM One.

  • 0145-minute session with your leadership team
  • 02Live demo on your own use case
  • 03Free AI readiness review of your current systems
Prefer to write? sadiq@easm.co

We reply within one working day. Presentations in person in Karachi and Lahore, or online.