Solutions/Partners

Sell obstruo, or deploy it for your clients

Regulated organisations rarely roll this out themselves. Partners resell obstruo, connect it to the client's apps and providers, and configure the routing and redaction policy the client has to defend. The account, the keys and the audit log stay with the client.

Become a partner
Referral or resale terms Implementation and migration work EU-hosted, EU regions only
Who we partner with

Five kinds of partner, one product to deliver

Some partners sell obstruo, some deploy it, some do both. The work is the same shape: get the client's AI traffic behind one endpoint they control, and get the policy right for their jurisdiction.

AI governance consultancies

You design the client’s AI governance model: risk tiers, approval gates, ownership. obstruo is the product you deploy so the model you wrote is actually running on the client’s traffic, not sitting in a document.

YOU BRING
Risk taxonomy and approval model
YOU DELIVER
Policy configuration in the client’s account, and the audit trail to review it
ISO 42001 and audit partners

You take clients through an AI management system: scope, controls, internal audit, certification. The audit trail from obstruo gives you dated operational records instead of screenshots and self-attestation.

YOU BRING
Control set and Statement of Applicability
YOU DELIVER
A deployment that produces the records your clauses ask for
GDPR and AI Act advisors

You run the DPIA, decide the lawful basis, classify the system. obstruo is where those conclusions turn into per-country redaction and EU-only routing on the client’s live traffic.

YOU BRING
DPIA outcomes and AI Act classification
YOU DELIVER
Per-jurisdiction redaction and residency routing, configured and tested
Systems integrators and platform teams

You build and run the client’s AI platform. Putting obstruo in front of it means one key and one endpoint for every app, with provider keys and routing rules you can change without a deploy.

YOU BRING
Reference architecture and delivery capacity
YOU DELIVER
Integration, migration off direct provider keys, routing and fallback rules
Managed service providers

You already operate infrastructure for regulated clients. obstruo becomes another managed service: you deploy it, tune the policies, and handle provider key rotation on the client’s behalf.

YOU BRING
Operations and support capability
YOU DELIVER
Ongoing configuration, key rotation and reporting as a managed service
We stay in our lane

obstruo builds and runs the enforcement layer. We do not sell advisory work, audits or implementation projects, and we refer that work to partners instead of competing for it.

Talk to the partner team
How the engagement works

A normal software deployment, done by you

The client gets an obstruo account. Your engineers work in it as members the client invites, with the roles the client chooses.

01 Sell or refer
You bring the client, we support the deal

Refer the opportunity and take a fee, or resell obstruo on your own paper. Either way you get the technical pre-sales support, the security documentation and the pricing to quote from.

02 Deploy
You put obstruo in front of their AI traffic

Load the client’s provider keys into their account, point their apps at one obstruo endpoint, and migrate them off keys scattered across services. Most of the work is one base URL and one key per application.

03 Configure
You set the routing and the redaction policy

Which providers answer which traffic, what happens when one is degraded, which regions EU traffic may leave to, and which PII categories are stripped for each jurisdiction the client operates in.

04 Hand over and support
The client owns it, you keep the relationship

The account, the provider keys and the audit log belong to the client from day one. You stay on for policy changes, key rotation, new applications and the yearly review, as a member of their account or as a managed service.

Deployment checklist client account
Provider keys stored in the client’s vaultDONE
Applications repointed to one endpoint7 OF 9
Routing rules, EU regions onlyACTIVE
Redaction policy, GDPR profileACTIVE
Fallback provider on degradationTO CONFIGURE
Direct provider keys revoked2 STILL LIVE
JURISDICTIONS CONFIGURED
GDPR CCPA LGPD
Account ownerThe client
Your team’s accessInvited members, client-set roles
Removed whenThe client removes the member
Access

The client’s account, not yours

Your engineers are members of the client’s account with the roles the client granted, and every action they take is attributed to them in the audit log.

What the client grants
A named member seat per person on your delivery team
Whatever role the deployment needs: configuration, read only, or billing
Access to the same console and audit log their own team uses
Removal in one click when the engagement ends
If you operate it as a managed service, that is a contract between you and the client. On our side it is still their account, their keys and their audit log.
The programme

What you get for joining

Deployment playbook

Migration checklist, reference configuration per jurisdiction, and the security documentation clients ask for.

Enablement and certification

Technical onboarding for your engineers, a test account to deploy against, and a named implementation certification.

Referrals and margin

Advisory and implementation work referred to you, with referral fees or resale margin per tier.

Tier 01
Referral

You introduce the client and stay advisory. Referral fee, no technical commitment, we run the deal.

Tier 02
Reseller

You sell obstruo on your own paper and own the client relationship and billing. Margin on subscriptions.

Tier 03
Implementation

You deploy and configure it, and optionally operate it as a managed service. Certification required, resale optional.

Start with one client deployment

Take one client through it end to end: keys into the vault, apps behind one endpoint, redaction and routing configured. Then pick a tier.

Become a partner See the use cases
Partner enquiries: office@obstruo.ai