Every model, one subscription
Your team picks the right model for the job: GPT, Claude, Gemini, Grok, Llama, DeepSeek and open-weight models you host yourself.
NEW MODELS ADDED AUTOMATICALLYYour team gets every major AI model inside the tools they already use. Prompts are encrypted before they leave the device and arrive at the model unattributable.
Your team picks the right model for the job: GPT, Claude, Gemini, Grok, Llama, DeepSeek and open-weight models you host yourself.
NEW MODELS ADDED AUTOMATICALLYNo new tab, no new habit. R2 runs in Microsoft 365, Google Workspace, the browser and the chat clients your team already has open.
OUTLOOK · GMAIL · BROWSER · TELEGRAMRole-based access, policy rules, PII and PHI handling, and logging configured to your obligations. Answer the auditor directly from the log.
POLICY · ACCESS · AUDIT TRAILSHADOW AI / THE PROBLEM
Your team is using AI whether you bought it or not. Blocking the tools slows the work. Approving one vendor solves only a fraction of the risk.
01 / UNAPPROVED ACCESS
59%of workers use AI tools outside company control02 / DATA EXPOSURE
77%paste confidential company information into them03 / SECURITY INCIDENT
43%of breaches now involve unmanaged AI use04 / BUSINESS IMPACT
$11.5Maverage cost of a data breach in the United StatesIBM, COST OF A DATA BREACH 2026 · SHADOW-AI BREACHES DOUBLED YEAR OVER YEAR
Follow the incidents, vendor changes and source documents that change your risk posture.
See the live radarHOW IT WORKS / PATENTED SDNP
Web app · Microsoft 365
Google Workspace · Browser
Zero-Knowledge Neural Routing Engine
Receives only what it needs.
No origin. No identity.
In Outlook, Word, Teams, Gmail, the browser or R2 chat. Nothing changes about how they work.
SDNP splits and encrypts traffic across dynamic paths. PII and PHI controls apply before anything leaves.
The model receives what it needs to answer and nothing that identifies your organisation.
The response returns through the same layer. Your log holds the full interaction; the vendor cannot tie it to you.
WHERE IT RUNS
R2 installs into the environment your organisation already runs and behaves the same in all of them.
Outlook, Word, Excel, PowerPoint, OneNote and Teams as native add-ins deployed across your tenant.
Gmail, Google Docs and Google Sheets from the Workspace Marketplace.
Explore Google Workspace →The R2 web app, Chrome extension and the R2 bot in Telegram.
Apps and extensions →WHO IT IS FOR
1.8 million US organisations are legally barred from putting their data into a public model. R2 gives the regulated ones a usable path forward.
All use casesKeep clinical, claims and PHI workflows inside the perimeter.
Supervision, access controls and audit trails for SEC, FINRA and NYDFS obligations.
Deploy in GovCloud or air-gapped for citizen, case and CJIS data.
Run open-weight models on your own hardware for ITAR and DFARS workloads.
Preserve privilege and client confidentiality across drafting and review.
Keep designs, source code and trade secrets out of vendor retention windows.
Replace shadow AI with a governed path people will actually use.
DEPLOYMENT / YOUR PERIMETER, YOUR RULES
We handle the connection to commercial models. Nothing to host. Fastest to start.
LIVE IN MINUTESRun open-weight models on your own infrastructure. Data stays exactly where you put it.
YOUR INFRASTRUCTUREYour tenant, region and keys — including GovCloud, private VPC and air-gapped environments.
MAXIMUM CONTROLRouted is live the moment the add-in is installed. No deployment project, no DevOps hire.
TRANSPARENT TIERING
Scale from single researchers to global sovereign enterprise divisions. All tiers include patented SDNP encryption.
SOLO OPERATOR
Free
SOLO OPERATOR
Pro
COLLABORATIVE WORKGROUPS
Team
DEPARTMENTAL SCALE
Business
GLOBAL SOVEREIGNTY
Enterprise
WHAT PEOPLE USE IT FOR
Summarise, draft and check sensitive correspondence without moving it to a consumer account.
Draft, compare versions and summarise what you were sent.
Build formulas, clean imports and explain complex sheets without uploading the data.
Give people a governed path they prefer to the unapproved account they use now.
337 ENTERPRISE CUSTOMERS · 220,000 USERS
SECURITY REVIEW / FAQ
Clear answers, before procurement turns into a six-month archaeology project.
The model receives what it needs to produce an answer and nothing that identifies your organisation. SDNP encrypts, splits and routes the prompt across independent nodes.
R2 stores no user-generated content. Prompts are encrypted on the device and discarded when the add-in closes.
GPT, Claude, Gemini, Grok, Llama, DeepSeek and open-weight models you host yourself. The policy set follows the user when the model changes.
R2 provides privacy controls, residency options and audit evidence for obligations including GDPR, HIPAA, CCPA, SEC, FINRA and NYDFS rules.
Install the add-in or extension, sign in and start working. Enterprise tenant-wide or custom environments are configured with the R2 team.
Yes. R2 add-ins are published on Microsoft AppSource and R2 is co-sell ready.
READY WHEN YOUR TEAM IS
Or start inside Office 365, Google Workspace, the browser or Telegram.