Every tier is end-to-end encrypted, post-quantum, and TEE-isolated. The tiers differ in model menu depth, frontier headroom, compliance posture, and dedication of infrastructure — never in privacy.
Single-tenant TEE infrastructure, custom compliance (FedRAMP, IRAP, country-specific data residency), per-tenant branding, custom MSA, white-glove onboarding, 4-hour response SLA with a named contact.
Looking for the technical deployment surface? /organizations has the architecture overview, compliance grid, and organizational capability matrix.
Privacy is not a pricing lever. Every paid tier carries the same cryptographic floor:
Pro Suite unlocks the full Best-in-Class menu (Claude Sonnet and Opus, on top of Haiku and the GPT-5.4 Nano/Mini already in Professional) and the full Private AI menu (Qwen3 Coder Next, GPT-OSS 120B). Frontier inference headroom rises from $50 to $200 per month, TEE inference from $25 to $75. Vault grows from 5 GB to 25 GB. Same encryption posture; more menu, more headroom.
Executive adds Confidential AI — HIPAA-eligible TEE-attested inference for regulated workloads (PHI, PII, GDPR-regulated data) via Phala SOC 2 Type 1 sub-processor BAA. Executive's Best-in-Class menu also adds Gemini 2.5 Pro, Mistral Large 3, and GPT-5.4 (full). Frontier headroom rises to $400/mo, TEE to $300/mo. Vault grows to 50 GB. Audit retention becomes full; support becomes 12-hour with chat; onboarding becomes a guided session.
Sovereign is for organizations that need single-tenant TEE infrastructure, custom compliance (FedRAMP, IRAP, country-specific data residency), per-tenant branding, or a custom MSA. If your requirement is more capability or more headroom, Pro Suite or Executive is the right tier. If your requirement is dedicated infrastructure or jurisdiction-specific data placement, that's Sovereign — see the /sovereign page.
Three BAA paths cover ArcaKey: (1) Phala-direct for our Confidential AI TEE path, offered on Executive where we handle the paperwork. (2) Anthropic Enterprise, OpenAI Enterprise, and Google Vertex AI BAAs cover most Best-in-Class models at the upstream contract level — coverage applies on every tier those models are available, not gated to ArcaKey’s tier. (3) Mistral Large 3 routes via AWS Bedrock under the AWS account-level BAA (active 2026-05-11) — the same BAA umbrella that covers our tenant-CMK KMS infrastructure. For PHI workloads we recommend Executive for the wraparound onboarding.
Each tier ships with a monthly frontier inference credit and a TEE inference credit. Inference inside that allowance is included in the monthly fee. Inference beyond it is billed at cost plus a tier-specific markup at the end of the cycle — no per-call surcharge, no surprise denial mid-conversation. You'll see warning banners at 80% and 95% of allowance, with the option to upgrade or pause.
Yes. Account Settings → Billing → Inference allowance has a hard-stop toggle. Default is off (overage permitted, billed at cycle close). Toggle it on, and inference pauses at 100% of allowance until the next cycle resets or you upgrade. Either choice is valid; the toggle is yours.
Claude Haiku, Sonnet, and Opus; GPT-5.4 (Nano, Mini, Full); Mistral Large 3; and Gemini 2.5 Pro are all available today. Check tiers and pricing to see which models are available in each tier. The Best-in-Class menu evolves as new flagship models become available; existing customers are notified by email when a model is added to their tier.
Not at this time. ArcaKey is on a prospecting exclusion list for Ontario Health, OHTs, Ontario-funded hospitals, Public Health Ontario, and Ontario ministries during an active consulting engagement separation window.
More on encryption, residency, retention, and compliance at /faq.
Start a Pro, Pro Suite, or Executive pilot today, or open a Sovereign conversation.