In a private box
Your documents locked in a space that is only yours.
Privacy and security are what we sell — so our own infrastructure has to be exemplary. Here is what we actually guarantee, without acronyms. The technical detail is further down, folded away for whoever wants it.
Before you upload a single document you sign a data processing agreement: it states in writing that the documents are yours, that we only handle them to run the service, that we never hand them to anyone else, and that we delete them when you ask. If we broke it, you would have a contract in your hands — not a promise on a web page.
Not our technicians, not an outside supplier. Reading your content in the clear is not part of anyone's job: there is a single emergency procedure, it leaves a trace, and if it were ever used you would be told.
Not ours and not anyone else's. Your files never reach a public AI service. Each customer has separate encrypted storage, so your content cannot surface in another customer's answers.
The two lines are different on purpose — pick the one your profession needs.
Honesty. We don't promise "zero-knowledge": any system that processes data decrypts it in memory in order to work on it. What we promise is who can see it and for how long — and every line of that can be checked by an independent auditor.
Your documents locked in a space that is only yours.
No one else can open it. Not even us.
When your session ends, the box is gone. Nothing remains.
Bank-grade encryption, verifiable.
Note: GDPR and HIPAA are not certifications. We will never display a badge we haven't earned.
If you have an IT consultant, this is the part to forward to them.
Your data is encrypted at rest (LUKS) and in transit (TLS 1.3). In-memory processing lasts only as long as the individual request; swap and core dumps are disabled, and temporary files live in RAM only. Your content resides exclusively in your tenant's encrypted database, with retention you control; we never access it or record it in our logs. No operator of ours can see your data in the clear (only a break-glass procedure that is logged and reported to you). The system has no outbound connectivity.
On-prem and air-gapped: your data never leaves your perimeter. Managed tiers (dedicated, EU-hosted): data stays in the EU under a DPA.
No third party retains your prompts or documents.
Models never learn from your content.
No calls to external providers, by default.
TLS 1.3 in transit, AES-256 (LUKS) at rest, encrypted backups.
Mandatory MFA, RBAC, append-only audit logs with hash chaining.
The system sends nothing to the outside world — and you can verify it yourself.
Separate containers, databases, and keys for every customer.
Independent pen test and bug bounty: on the roadmap ahead of go-live. Vulnerability disclosure policy: security.txt.
We walk you through where your data lives, step by step. Start with 3 hours or request the technical document.
A person answers — usually within one business day.
Quick questions
Start with 3 hours · $21