To defend a system, you must be able to simulate the attacker. Yet the major proprietary American models contractually prohibit much of that work — and can see everything your teams submit to them. Ministral and Qwen, operated with us or on your premises, have neither of those limits.
The acceptable use policies of proprietary models typically prohibit analysing malicious code, generating attack scenarios, assisted penetration testing or phishing simulation — even when it is your own system you are testing, with every authorisation in place. In practice, this translates into:
Red team
Generate realistic attack scenarios, exercise phishing campaigns and complete intrusion chains — with no refusal halfway through the exercise.
Blue team / SOC
Dissect malware, obfuscated scripts and real phishing emails, and write detection rules — without exfiltrating your samples to a third party.
Governance
Your usage charter and European law govern the tool — not the revocable, extraterritorial terms and conditions of a foreign vendor.
Freedom does not mean the Wild West: these uses remain governed by the law and by your internal policies. The difference is that the referee is European — and you are the one holding the whistle.
“You cannot build a serious defence with a tool that refuses to talk about the attack — and reports your weaknesses to a third party.”
Shared endpoint, dedicated instance or on-premise deployment at your site: let’s discuss it with your CISO. And for the basics, see why Mistral and Qwen are champions of sovereignty →