Start working with it. It keeps up.
Work on a project on Monday. Update the website on Tuesday and the draft already carries Monday's context. Launch the campaign on Thursday and the whole week is its starting point, cited and attributed. What it learns lands in one governed library you can see as a graph, where every connection opens the ledger row that proves it.
What a turn holds, and what the company keeps.
Context is what one governed turn works with, and it is gone when the turn ends. Memory is what your company keeps: what happened, what we know, what we can do. Every turn deposits into memory, and memory folds back into the next turn. Practitioners are starting to call these two crafts context engineering and memory engineering; the diagram shows how ZeroH ships them as one governed loop. That loop is why nobody says "remember" in the sample week; the context travels on its own, across agents, with a receipt on every hand-off.
every turn signed; episodes fade on schedule, their lessons stay
attributed facts that supersede instead of overwrite
routines that became skills, each one ratified by a person
It maintains itself out of the work your team is doing.
Each of these feeds captures work your team is doing anyway, where it happens.
A folder you already have
Put the files in a SharePoint folder and point Studio at it. The folder’s own permissions decide who the answers reach, drop a document in the team folder and the team can ask about it; drop it in the restricted one and only those people ever see it in an answer. Turn on “Keeping it current” and the base re-checks the folder for you.
Your meetings, the day they happen
Governed meetings are transcribed, masked on your soil, summarised with their decisions and owners, and kept as context. Nobody maintains it, and weeks later the answer still names the meeting it came from.
“Remember this”
Telling the assistant something will write it down, as a governed, attributed, versioned entry. Every fact will carry who taught it and when, so an answer can say “per the CEO in June” rather than presenting a guess as canon, and a correction supersedes the old fact without erasing the record.
Your documentation, on change
The documents that describe how your company works will re-ingest when they change, so the library tracks them instead of drifting from them.
Drop a folder. Point at it. Done.
Standing up a governed RAG takes a folder you already have, one screen in Studio, and the agents you choose to attach it to.
A SharePoint folder you already have, policies, contracts, standards, product docs. It is read where it lives; nothing gets converted or copied out.
Point at the folder, say who can read it, and pick how its documents are cut. One screen, no integration project, no data pipeline to own.
The help desk gets the product base, compliance gets the standards, everyone gets the handbook. Each agent then answers from what it is attached to, and from nothing else.
A real first ingest reads out like this: 34 files read, 1,208 chunks indexed, 2 skips named, each skip with its reason. sample figures
Already built a RAG? Keep it. Plenty of teams have already stood up an index, a graph in Neo4j or Graphiti, a vector store, a search cluster someone tuned for a year. Replacing it should not be the price of governance.
Connect it as a source
Coming soon: register the index you already run as a governed source through the same connector lane as every other system, configure, probe, preview what it would reach, approve.
It answers under the same rules
What comes back will ride the spine everything else rides: masked before any model, cited so an answer can be checked, reachable only by the people entitled to it, and on the ledger.
To be precise about what this is: your index becomes a source ZeroH can read under governance, while ZeroH keeps its own retrieval on the stack we measured. For a standards library, a graph store came out slower, pricier and harder to audit in that measurement.
A knowledge graph where every edge opens its proof.
The library compounds into a graph of what your company knows: the shelves, the documents, the decisions, and the connections the work itself created. Every edge is a stored fact or a deterministic join, and it opens the ledger row that proves it. The graph view is in build now; this rendition is illustrative.
The same build brings My Map, your personal view of the brain. Your raw files stay in your own OneDrive under Microsoft's ACL; ZeroH keeps a masked digest and a pointer, so your map is yours in the same way the company's memory is the company's.
Your documents are half of it. The other half is what is happening now.
A project lives in its team: the meetings, the decisions, the promises people made to each other. In ZeroH that project is the Teams team you already have, and the agents work inside it.
What’s waiting on who?
Four open items on this project, each from the meeting that agreed it:
A week where nothing moved is skipped with a named reason, never padded.
Draft the newsletter about this project.
Drafted from this project’s own meetings and files:
It writes from what the team actually said, and cites the meeting each claim came from.
And when someone needs the story of that project told to people outside it, the same context becomes the artefact, in the pane where the work happens.
The same projects you have in Teams are in the pane’s picker. Choosing one gives the assistant that project’s context, its meetings, its decisions, its files, and nothing from anyone else’s.
Say what it is for. “A status deck for the stakeholders” resolves against the project you picked, with its real decisions and owners.
Your wordmark, palette and type come from the brand kit in Studio, so the deck lands in your own branding rather than a vendor’s.
The thread comes with you too: start in Teams, open the pane in the next app, and the same masked conversation resumes, same context, same governance, different window.
The folder’s permission is the boundary.
Whoever can open the folder is whoever the answers reach. The folder permission is the only permissions model, so a document can only answer people who could have opened it.
Entitled asker
Gets the answer, with the document and section it came from. The citation is checkable: it names the source the answer stands on.
Everyone else
Gets a plain refusal. Without readable sources there is no answer, and a summary that would leak the source is blocked the same way.
Some shelves stay dark until you say otherwise. Salaries, invoices, board material: the assistant can know the shelf exists and still not be able to read the numbers on it, so it tells you, instead of guessing around them.
Compute on the real numbers, on the record
The assistant pulls the terms it needs, finds the amounts masked, and asks before it guesses. One granted lift later it reasons on real figures. The reveal itself is evidence.
The AI asks to see, and you can cut it off anywhere
When the model needs a real figure, it will ask for the shortest useful window, never longer than your DPO allows, and the reveal will be visible and revocable from any surface.
Three more layers are on the way.
The digest tier
Concept pages will compile above the chunks, each carrying pointers to the exact chunks and hashes it derives from. Exploration will read the digest; anything that cites will cite the source.
People find each other
The assistant will offer introductions from presence facts alone, the offer will route to the person for consent, and a disclosure policy your DPO sets will decide who is discoverable at all.
The leadership view
Leadership will see where knowledge concentrates and where a single person carries a whole topic, from the governed trace. People stay cohort-floored; any named drill-down will be DPO-gated, audited, and visible to the person it concerns.