Customer reference

Custom ERP for AZAV-certified AI education: one auditable platform

Scaly Academy · AI education near Frankfurt · How Pexon Consulting built a custom event-driven ERP plus an EU-compliant Claude platform on AWS Bedrock, so every regulated process Scaly and its clients depend on runs on one auditable system.

Updated: July 2026
Key facts at a glance
Who
Scaly GmbH (Scaly Academy), an AZAV-certified AI education provider running publicly funded vocational training near Frankfurt.
Problem
Generic ERP tools could not encode AZAV and QCG compliance processes, while disconnected spreadsheets created audit gaps and blocked safe AI adoption under GDPR.
Solution
Pexon Consulting delivered a custom event-driven ERP with authentication, governance and RBAC on Supabase PostgreSQL, plus Claude on AWS Bedrock behind a LiteLLM gateway.
Result
Scaly now runs regulated training operations on one auditable system, with EU-compliant AI in production and its own team trained on Claude Code to extend the platform.

Results

1
Auditable system · ERP, AI platform and enablement in one build
7
Milestones delivered · from Bedrock platform to ERP UI/UX
EU
Data residency · Claude via AWS Bedrock, GDPR-aligned
Live
Production status · AI platform and ERP in active use

Client overview

Industry
AI education / vocational training (AZAV-certified EdTech)
Company
Scaly GmbH (Scaly Academy)
Region
Frankfurt region, Germany
Services
Custom ERP build, EU-compliant AI platform, team enablement
Tech stack
AWS Bedrock, Claude, LiteLLM, Claude Code, Supabase (PostgreSQL)
Project duration
End-to-end build engagement
Compliance
AZAV, QCG, GDPR (DSGVO)
Status
Custom ERP delivered; AI platform in production use

Starting point

No system of record
Scaly had no single system covering the regulated, end-to-end training lifecycle from enrolment through attendance, funding eligibility, certification and audit trails.
Niche AZAV compliance
AZAV and QCG processes are highly specific. Generic ERP and CRM products do not model them, and spreadsheets create exactly the documentation gaps an AZAV audit punishes.
Dual compliance surface
Scaly itself must comply with accreditation rules, and so must its institutional clients. Both sides need traceable, access-controlled records in one place.
GDPR risk in AI adoption
Scaly wanted modern AI tooling internally, but without controlled, in-region data handling and governed model endpoints, adoption would create GDPR exposure.

Solution & approach

1
Event-driven architecture
The ERP is built around events rather than monolithic CRUD flows. Every regulated state change, from enrolment to certification, is an explicit, traceable event, auditable by design.
2
EU-compliant Claude on AWS Bedrock
Claude is consumed through AWS Bedrock so model traffic and data stay within an EU-compliant boundary, satisfying GDPR data-residency requirements for regulated operations.
3
LiteLLM gateway
A single gateway abstracts model access for the whole organization, centralizing keys, routing and usage governance behind one interface instead of scattered endpoints.
4
Supabase, auth and RBAC
Supabase PostgreSQL holds regulated data as the system of record. Authentication, governance and role-based access control govern who can read and change which records from day one.

Before / after

DimensionBeforeAfterImpact
OperationsDisconnected spreadsheets and toolsOne auditable ERPSingle system of record
AZAV / QCG complianceManual, fragmented documentationProcesses encoded in softwareLess audit-prep effort
AI usageGDPR uncertaintyClaude via EU Bedrock + LiteLLMControlled data flows
CapabilityDependency on external vendorsTeam trained on Claude CodeIn-house extension
We now run our regulated training lifecycle on one auditable system instead of disconnected tools. Pexon encoded our AZAV processes in software and left our team able to extend the platform ourselves.
SA
Management, Scaly Academy
Leadership · AZAV-certified AI education, Frankfurt region

Technologies & services

AWS Bedrock Claude LiteLLM Claude Code Supabase Event-driven ERP

Frequently asked questions

Can an off-the-shelf ERP cover AZAV-certified training operations?
Rarely. AZAV and QCG require specific, documented processes that generic ERP products do not model. Pexon built a custom ERP so the regulated workflow is encoded directly, with an event-driven design that keeps every state change auditable.
How is AI usage kept GDPR-compliant in this project?
Claude is accessed through AWS Bedrock in an EU-compliant boundary, and a LiteLLM gateway centralizes and governs model access across the organization. Data flows stay controlled instead of routing through unmanaged public endpoints.
What does event-driven architecture buy a regulated business?
Because each regulated action is an explicit event, the system has a traceable record of what happened and when. That is exactly what an AZAV audit needs, instead of reconstructing history from spreadsheets after the fact.
Will Scaly depend on Pexon to maintain the system?
No. Pexon trained Scaly's management and engineering team on Claude Code so they can extend the ERP themselves. Capability transfer was part of the engagement, not an afterthought once delivery was done.
What database and security model underpins the ERP?
A Supabase PostgreSQL database serves as the system of record, with built-in user authentication and role-based access control governing who can read and change regulated data. Governance was designed in from the start.
Regulated operations on a custom, auditable platform
Ready to run AZAV, GDPR or other regulated processes on custom software with EU-compliant AI built in? Pexon Consulting covers enablement, platform and product engineering in one engagement.
Contact us now

Sie suchen einen Partner für Ihr Projekt?

Wir analysieren Ihren individuellen Bedarf, geben erste Empfehlungen zu Umsetzungsstrategien und bieten Ihnen transparente Einblicke in unsere Methoden, Technologien und Referenzen.

400+
Projekte seit 2020

100+
Kunden im DACH-Raum

ISO
27001 zertifiziert

3
Hyperscaler Partner