Arctis AI
ProductHow It WorksAboutPressCareers
Sign inBook a demo
Arctis AI
Product→How It Works→About→Press→Careers→
Book a demoDeutsch · DE
Security · Privacy · Data Protection

How Arctis AI protects your data

Arctis AI analyses your most sensitive documents. This overview sets out the technical and organisational measures that keep that data private, isolated, and under your control, hosted in the European Union, and never used to train AI models.

EU hosting · Frankfurt regionGDPR independently auditedNo AI training on your dataSingle-tenant isolationISO 27001 · SOC 2 · C5 infrastructureEU data residency
At a glance

Private by design, in every layer.

EU data residency

Your documents and application data are stored and hosted in the European Union, in the Frankfurt region.

Your data never trains AI

We use Google Vertex AI for analysis. Under Google's Vertex AI terms, your content is not used to train Google's models, and never trains ours.

Complete tenant isolation

Every organisation is a sealed tenant. Users in one organisation can never reach another organisation's data.

Encrypted end to end

All data is encrypted in transit with TLS and at rest with AES-256, across every service and data store.

Independently GDPR-audited

Our GDPR compliance has been reviewed and confirmed by an independent third-party auditor.

Enterprise SSO & roles

Single sign-on with granular, role-based permissions, down to individual projects, managed by your admins.

GDPR · Independently audited · Third party

Verified GDPR compliance

An independent third party has audited Arctis AI and confirmed our compliance with the EU General Data Protection Regulation. The measures described below are the technical and organisational controls behind that result.

Standards & regulatory alignment

Recognised standards & regulations

Arctis AI
GDPR / DSGVO

Independently audited by a third party for compliance with EU data-protection law.

By design
EU AI Act

Aligned with its core principles: transparency about AI use and meaningful human oversight.

Infrastructure
ISO / IEC 27001

The entire platform runs on ISO 27001-certified cloud infrastructure.

Infrastructure
SOC 2 Type II

Every core provider we rely on is independently SOC 2 Type II audited.

Infrastructure
BSI C5

Cloud infrastructure attested to Germany's C5 cloud-computing security standard.

Arctis AI
EU data residency

Stored and hosted exclusively in the EU (Frankfurt), with no transfer to third countries.

01Hosting & data residency

Everything runs in the European Union

Your data does not leave the EU for storage or hosting. The entire Arctis AI platform is operated in the Frankfurt region.

We build on managed European cloud infrastructure so that data residency, patching, and physical security are handled by providers held to independent standards, while access to your data stays strictly governed by the controls in this document.

The underlying data centres are operated by hyperscale providers (AWS and Google Cloud) that maintain their own independent certifications, including ISO 27001, SOC 2 and BSI C5. These attestations cover the physical and infrastructure layer beneath Arctis AI.

Where your data lives
Database & document storage
Supabase (managed PostgreSQL & object storage), EU, Frankfurt region.
Application & processing
Backend services on Render, EU, Frankfurt region.
Web application
Served via Vercel, EU, Frankfurt region.
AI analysis
Google Vertex AI (enterprise), see section 02.
02AI & your data

How AI uses your data

Arctis AI performs all AI analysis through Google Vertex AI, Google's enterprise AI platform, not the consumer Gemini app or its free API.

This distinction matters. Under Google's Vertex AI terms, the prompts and documents we send for analysis are not used to train or improve Google's foundation models. Your content is processed to produce your result, and that is all.

Arctis AI likewise does not train, fine-tune, or build any model on your data. There is no shared model that learns from one customer and benefits another. Analysis runs strictly within your organisation's context, and outputs stay inside your tenant.

Arctis AI supports expert judgment rather than replacing it, in keeping with the EU AI Act's emphasis on transparency and human oversight.

To keep analysis reliable we monitor AI quality through Langfuse. Email addresses are automatically redacted from these diagnostics before they are recorded.

What this means for you
No training on your data

Neither Google (per Vertex AI terms) nor Arctis AI trains models on your content.

Enterprise endpoint

Vertex AI is accessed with dedicated service credentials, not a shared consumer product.

No cross-tenant learning

Your data never trains a shared model or informs another customer's results.

PII-aware monitoring

Email addresses are redacted from quality diagnostics.

03Identity & access control

Access control & permissions

Access to Arctis AI is governed by enterprise single sign-on and a layered permission model that follows the principle of least privilege.

Sign-in runs through WorkOS, our enterprise identity provider. Every session carries a cryptographically signed token, verified on each request against the provider's public keys. The organisation a session belongs to is itself a signed claim. It cannot be forged or swapped by a client.

On top of organisation membership, access is granted per project. Administrators assign each member an Editor or Viewer role, and those grants cascade automatically through nested project structures. Members start with no access until it is explicitly granted.

Changes take effect immediately. When an administrator revokes access or changes a role, the new permissions apply on the very next request. There is no waiting for a session to expire.

Three layers of authorisation
01
Organisation membership

You must belong to the organisation, the multi-tenancy boundary.

02
Project role: Editor / Viewer

Granted per project by admins; cascades to sub-projects and their documents.

03
Database row-level security

A final defence-in-depth check enforced inside the database itself.

04Tenant isolation

Each organisation is fully isolated

Multi-tenant separation is enforced on every request, at two independent layers.

Two independent layers
Bound to your organisation

Every record (projects, documents, extracted facts) is tied to an organisation. Each request is checked against your organisation on the server before any data is returned.

Enforced twice

Cross-organisation access is blocked at the application layer and again by database row-level security policies, so a single mistake in one layer cannot expose another tenant's data.

Separate test environments

Preview and testing environments run on their own isolated databases. Your production data is never copied into them.

05Encryption & secrets

Encrypted in transit and at rest

Data is protected both while it moves and while it is stored.

Every connection between your browser, our services, and our data stores is secured with TLS. Documents and database contents are encrypted at rest with AES-256 by the underlying managed platforms.

Credentials never live in our source code. Secrets are held in managed secret stores and separated by environment, so staging and production run on entirely different keys.

Controls
In transit

TLS / HTTPS on every service-to-service and client connection.

At rest

AES-256 on the database and on document storage.

Secret management

No secrets in code; managed vaults, isolated per environment.

06Secure engineering & operations

Secure development & operations

Our development process is designed to keep unsafe changes out of production and to contain what the AI is allowed to do.

Reviewed before shipping

Every change is peer-reviewed before release, supported by automated review assistants that flag issues early.

Automated quality gates

Linting, formatting and database-migration safety checks run on every change and block anything unsafe from merging.

Sandboxed AI execution

When analysis requires running code, it executes in an isolated, ephemeral sandbox kept separate from our core systems.

Abuse protection

Per-organisation rate limits and strict cross-origin controls validate the exact origin of every request.

Dependency hygiene

Third-party dependencies are version-pinned and reviewed, with pre-merge checks on every commit.

Defence in depth

Application-level checks are backed by database row-level security, so no single layer is the only thing standing between tenants.

07Data lifecycle & your rights

Ownership, retention & deletion

You remain the owner of everything you upload. Arctis AI processes it on your behalf, and only for the purpose of serving you.

Deleting a project or document removes it from all views immediately. A recovery window protects you against accidental deletion, and permanent erasure is available on request.

Because our GDPR compliance has been independently audited, the processes behind these rights (access, deletion and erasure) are documented and externally reviewed rather than merely asserted.

Handling your data
You own it

Arctis AI acts as processor; you remain the controller of your data.

Reversible deletion

Immediate removal from view, with a recovery window against mistakes.

Erasure on request

Permanent deletion available when you ask for it.

08Sub-processors

The services we rely on and why

We work with a small, deliberate set of established providers. Each one has a specific role and sees only what it needs to perform it.

Every provider is a recognised platform with independently audited security certifications. The majority hold both SOC 2 Type II and ISO 27001, and all are GDPR-compliant.

ProviderPurposeWhat it processesIndependent certifications
Supabase
EU · Frankfurt
Database & document storageYour uploaded documents and structured analysis data.
SOC 2 Type IIISO 27001HIPAAGDPR
Render
EU · Frankfurt
Application hosting (backend)Processes requests; holds no data of its own at rest.
SOC 2 Type IIISO 27001GDPR
Vercel
EU · Frankfurt
Web application hostingServes the user interface; no document storage.
SOC 2 Type IIISO 27001GDPR
Google Vertex AI
AI analysisDocument and prompt content, processed transiently and not retained to train models.
ISO 27001SOC 2BSI C5GDPR
Langfuse
EU · Frankfurt
AI quality monitoringAI request diagnostics, with email addresses redacted.
SOC 2 Type IIISO 27001GDPR
WorkOS
EU · Frankfurt
Identity & single sign-onUser identity and organisation membership.
SOC 2 Type IIHIPAAGDPR
Resend
EU · Frankfurt
Transactional emailAddresses and content for notification emails.
SOC 2 Type IIGDPR
Talk to us

Questions from your security team?

We're glad to walk through any of these measures in detail, provide our data-processing documentation, or complete a security questionnaire. Reach us through your Arctis AI representative.

Contact us
Arctis AI · Reviewed July 2026
This overview reflects Arctis AI's production architecture and describes the technical and organisational measures in place. It is provided for information and does not itself form part of a contract.
Arctis AI
Automated Bid Evaluation for Construction Procurement
Product
OverviewHow It WorksTrust center
Company
AboutCareersPressContact
Legal
Privacy PolicyTerms of ServiceCookie PolicyImprint
Other
FAQResources
© 2026 Arctis AI. All rights reserved.