02 · Hardware
Three classes, one principle: sized for the task.
Compact system as a quiet desktop or tower computer in the office, server class as a rack or tower server in the server room, or a server pair that is redundant by design. The determining factors are graphics memory, RAM, storage and the number of concurrent users. We check existing hardware in the hardware check; if it is suitable, the hardware share of the package is dropped.
You decideLocation, form factor, your own or supplied hardware
Stated in the quotationThe specific equipment. We don't name components we don't supply.
03 · Models
Several open models, interchangeable, with no training on your data.
For text, technical language, images and code, one tested open model from AI research in each case. Which model answers is handled by the system; your employees see one interface. Models can be swapped with an update without anything changing for the users (see model change). Your questions and documents are not used for training, neither by us nor by a model provider.
You decideWhich capabilities are active, when updates are installed
Stated in the quotationThe models in use, with version. We don't name them on the website because they change with updates.
04 · Permissions
The AI adopts your permission structure; it does not replace it.
Permissions apply by user, group and source and are connected to your existing directory. A question is answered only from sources the person asking is released for. Anyone who may not open a personnel file gets no answer from it either. We set up roles and access areas together with you; how fine-grained the structure is, you decide.
You decideRoles, access areas, exceptions
EvidenceJoint test with your real cases before handover
05 · Knowledge sources
Documents stay where they are. The index is on the system.
File server, NAS and network drives are included in every package. Microsoft 365, Google Workspace, e-mail, Nextcloud, Confluence as well as ERP, CRM, DMS, accounting and databases can be added as connections, via open standards such as MCP, APIs and OpenAPI. Every connection only receives the permissions you grant for it: read access in every connection; write access for defined actions (draft, issue, entry, hand-over) only where the interface provides for it and you approve it, within a scope approved specifically for that purpose. A new document is available once it has been indexed; a removed document is removed from the index. No second file store is created.
You decideWhich file stores and systems are connected, with which permissions, and whether a connection may only read or also carry out defined actions
Depends onPackage (number of access areas and connections) and the interface of the respective system, see configurator
06 · Network
By default, reachable only from your network.
The system sits on your premises and is used via browser or app on the company network. Nothing is opened to the outside that you don't open yourself. AI processing needs no internet connection; a connection is used only for updates and, if booked, for the remote service, in each case after your approval. Whether the interface should also be reachable from outside, for example via your VPN, is for your IT team to decide.
You decideNetwork segment, reachability, time windows for outside connections
PrerequisiteA place with power and network, access for the system to the connected file stores
07 · Updates
We provide them. You decide when they are installed.
We provide model and software updates for twelve months, after that optionally as an extension. Installation takes one of two routes: your IT team installs the update as a package, or we take care of it in the remote service after your approval. In both cases, only the update comes in; none of your data is transferred. What an update brings, you learn beforehand in the customer portal.
You decideTiming, route (package or remote service), approval
IncludedTwelve months in every package
08 · Remote service
Access only after approval, every session logged.
Without remote service, we have no access to your system. With remote service, access exists only within the scope you define: for a single session or permanently, with a log of every session in your system. We work on the system, not with exports; maintenance needs no copy of your data. For the remote service, we conclude a data processing agreement with you. What is monitored is utilisation, storage and models.
You decideWhether at all, to what extent, when
ContractuallyData processing agreement, German law
09 · Backup
Configuration and index are backed up. You back up your documents as before.
The system's configuration and knowledge index are backed up in such a way that they can be restored on a replacement device. Your documents remain in your file stores and run through your existing backup; the system holds no second copy that you would have to back up in addition. The system's storage media are encrypted. Where the system's backup is written to is agreed with your IT team during setup.
You decideBackup target, retention, deletion
No copiesDataFlowFacts holds no copies of your data
10 · Resilience
One system or two. We tell you what that means in the event of a failure.
With AI Compact and AI Team, the AI runs on one system. If it fails, the AI is down until the device is repaired or replaced; your documents are not affected. Configuration and index are restored on the replacement device. AI Enterprise is redundant by design: two systems, and the failure of one can be absorbed by the other. We don't promise uninterrupted operation; that would not be honest for any system.
You decideWhether redundancy is needed, in the configurator or in conversation
Depends onPackage and hardware class