IT leaders want AI that moves the needle without blowing up risk, cost, or changing control. Your teams need a path to productize AI features on top of existing apps, connect safely to external models, and satisfy audit requirements without slowing delivery. Those are the core buying criteria we hear from IT middle management: buy over build, predictable outcomes, and a strong compliance posture.
Upsun is a cloud application platform that pairs Git-driven configuration with production-grade preview environments and integrated guardrails, allowing you to deliver AI features quickly while maintaining control. It supports AI-augmented applications and agent workflows, providing AI tools with structured, real-time context through RAG capabilities.
What you can build on Upsun today
AI-augmented applications with your choice of external model APIs. Upsun supports integration with any LLM service that provides an HTTP API, including OpenAI, Mistral, Claude, Gemini, or DeepSeek.¹
RAG architecture to ground model output in your domain data, improving accuracy and reducing hallucinations.² ³ Upsun supports a wide range of vector databases to embed and store your content.
MCP-powered development where Copilot, Claude, and other assistants query MCP servers you host on Upsun to pull live configuration or data, then propose changes aligned to your platform standards.⁴ ⁵ ⁶
Important note on compute: Upsun does not provide GPUs by default. You leverage your application and data on Upsun while connecting to external model endpoints or GPU-augmented servers for training or inference via standard HTTP APIs. See How to deploy AI.
Enterprise-grade security without the slowdown
Security is table stakes. The average global cost of a data breach was USD 4.88 million in 2024, and IBM’s 2025 report shows a decline to USD 4.44 million for organizations accelerating detection and containment with AI.⁷ ⁸ That is still expensive, so guardrails matter.
Here is how Upsun helps:
Git-driven YAML config. Your infrastructure, services, and routes live in a single, reviewable config.yaml, versioned alongside code. See 'Configure your project and YAML structure' in the documentation. ¹⁰ ¹¹
Automatic preview environments per Git branch. Each branch gets a live, production-grade environment that can inherit data and services from the parent, so changes are validated against realistic conditions before merging. ¹² ¹³
Instant data cloning with sanitization. Clone data down for tests while removing PII using built-in sanitization workflows for MariaDB and PostgreSQL. ¹⁴ ¹⁵
Access controls and MFA. Enforce multifactor authentication across your org and manage least-privilege access per project through the CLI and Console. ¹⁶ ¹⁷
Observability and APM. Integrated profiling and application metrics enable you to measure performance at every stage of the lifecycle. ¹⁸ ¹⁹
These guardrails align with recognized frameworks. NIST’s AI Risk Management Framework emphasizes governance, measurement, and operational controls across the AI lifecycle, while the EU AI Act begins phased obligations between 2025 and 2026.²² ²³
Reference architecture: secure RAG and MCP on Upsun
This example shows a minimal setup that connects an API service to an external model endpoint, provisions a managed Postgres database for your embeddings store, and runs an optional MCP server that developer tools can query.
Predictable cost and compliance. Upsun centralizes controls and supports enterprise certifications, helping you meet obligations while keeping focus on feature delivery. ²⁰ ²¹
Proof points you can take to the board
Generative AI adoption is real: 65 percent of organizations were already using gen AI regularly in early 2024.²
RAG improves robustness by grounding outputs in current, relevant data and is the dominant pattern for enterprise AI apps.³
The EU AI Act is now in effect, with its obligations phasing in from 2025.²³
Breach costs remain material even as detection improves, reinforcing the need for strong guardrails when connecting to external AI services.⁷ ⁸
AI-augmented applications and enterprise security are not at odds. Upsun gives your teams the building blocks to connect to external models safely, validate changes against production-like data, and ship with confidence.