Skip to content

Integration

Squad is designed to slot into your existing environment, not replace it. The entire platform is deployed, operated, and maintained by our team. Your organisation provides three things: users, an identity provider, and data. We handle everything else.

Integration Architecture
Integration Architecture SQUAD MANAGED PLATFORM CAPABILITIES Search Semantic + graph Generate Reports + answers Automate Workflow engine Visualise Graph explorer Analyse Patterns + insights SECURITY GATEWAY Role-Based Access API Gateway / Ingress AuthN / AuthZ OIDC · JWT · SSO federation COGNITIVE ENGINE USEP Ingest · encode · bind SOMA Knowledge graph + memory AIM Reasoning · planning · execution DATA & INFRASTRUCTURE Property Graph Database Graph + vector store PostgreSQL Events + audit log Object Store Files + artifacts LLM Inference BYO keys or managed YOUR ENVIRONMENT EXISTING INFRASTRUCTURE USERS Workstations Browser-based access IDENTITY Your SSO / IdP AD · Okta · Azure AD · Keycloak DATA SOURCES Files PDF, DOCX, CSV Databases SQL, warehouses REST APIs Webhooks HTTPS Browser-based UI access SAML/OIDC Federated single sign-on REST API Upload files + ingest data

Integration Surface

Every Squad deployment connects to your environment through exactly three interfaces. There are no agents to install, no middleware to configure, and no background services to maintain on your side.

1. HTTPS — User Access

Your team accesses Squad through a standard web browser at a dedicated URL (e.g., https://yourorg.squadai.uk). No client software, no VPN client, no desktop agent.

  • Protocol: HTTPS with TLS 1.2+
  • Authentication: Redirects to your identity provider via SSO
  • Network requirement: Browser access to your Squad instance URL

2. SAML / OIDC — Identity Federation

Squad federates authentication to your existing identity provider. Your users log in with the credentials they already have. We never store passwords.

  • Supported protocols: SAML 2.0, OpenID Connect
  • Compatible with: Azure AD, Okta, Google Workspace, on-premise ADFS, any SAML/OIDC-compliant IdP
  • Provisioning: Users and roles map from your IdP; no separate user management required

3. REST API — Data Ingestion

Data enters Squad through a documented REST API, the platform UI (drag and drop), or the usep CLI. All formats are normalised into a unified knowledge graph.

  • Methods: REST API upload, browser-based upload, CLI batch ingestion
  • Supported formats: PDF, DOCX, PPTX, CSV, Excel, Markdown, HTML, plain text, images
  • Storage: All data stored within your Squad instance; never shared across tenants

What We Manage

Squad is a fully managed platform. This is a deliberate architectural choice, not a limitation. By owning the full stack, we deliver faster updates, tighter security, and consistent reliability.

ResponsibilityManaged by Squad
InfrastructureCompute, networking, storage, load balancing
PlatformApplication deployment, configuration, scaling
Database operationsNeo4j (graph + vector), PostgreSQL (events + audit), Redis (cache + pub/sub), object storage
AI/MLLLM inference, embedding models, NLP pipelines, model updates
SecurityTLS termination, encryption at rest, secret rotation, vulnerability patching
MonitoringHealth checks, alerting, incident response, SLA management
UpdatesZero-downtime deployments, version management, regression testing
BackupsAutomated backups with agreed retention and recovery targets

What You Provide

ResponsibilityYour organisation
Identity providerYour existing SSO (Azure AD, Okta, ADFS, etc.)
UsersAssign who in your organisation should have access
DataUpload documents and files through the UI, API, or CLI
Network accessAllow browser access to your Squad instance URL

Deployment Models

Squad supports three deployment models. In every case, the platform is managed by our team.

Squad Cloud

Hosted on Squad-managed infrastructure. Days to deploy. Automatic updates. The fastest path to value.

Dedicated

Deployed into your cloud (AWS, Azure, GCP) or on-premise environment. Your data never leaves your infrastructure. Squad-managed.

Air-Gapped

Fully disconnected deployment for classified or regulated environments. No external network dependency. Squad-managed via secure delivery.

Squad CloudDedicatedAir-Gapped
InfrastructureSquad-managedYour cloud / on-prem, Squad-managedYour isolated environment, Squad-managed
Data residencyYour chosen region (UK, EU, US)Your infrastructureYour infrastructure
NetworkInternet-accessible with SSOPrivate network / VPNFully disconnected
Setup timeDaysWeeksWeeks (environment-dependent)
UpdatesAutomatic, zero-downtimeCoordinated with your change managementSecure delivery, coordinated rollout
Best forFast evaluation, teams without strict residencyRegulated industries, data sovereigntyClassified environments, air-gapped networks

Setup Sequence

Integration follows a defined, repeatable sequence. Our team leads every step.

  1. Scoping

    We assess your requirements: deployment model, identity provider, data residency, compliance constraints, and initial use case.

  2. Identity

    We configure SSO federation with your identity provider. Your IT team provides SAML/OIDC metadata; we handle the Squad-side configuration.

  3. Deployment

    We provision your Squad instance, configure the knowledge graph ontology, set up model inference (your API keys or our managed models), and validate end-to-end connectivity.

  4. Data

    Your team uploads initial data through the UI, API, or CLI. Our team assists with ontology tuning and ingestion validation.

  5. Handover

    We train your team on the platform: querying, workflow creation, the Tune page for curation, and administration. Ongoing support continues via direct access to our engineering team.

Security Posture

Security is embedded across the integration surface, not bolted on.

  • Authentication: OAuth2/OIDC with JWT validation; SSO federation to your IdP
  • Authorisation: Role-based access control with granular permissions
  • Encryption: TLS in transit; encryption at rest per your compliance requirements
  • Audit: Append-only audit trail with correlation IDs across all operations
  • AI safety: Deterministic security review on generated queries; risk-aware routing; dynamic tool validation
  • Tenant isolation: Single-tenant deployments; no data sharing across organisations

For full details, see the Security page.

Get Started

Ready to integrate Squad into your environment? Contact our team to begin scoping.