Pryvan
Trust center

Security and trust at Pryvan

How we secure your data, where it lives, who can touch it, and the certifications we hold and are pursuing. One page, no sales gloss.

Pryvan exists because European organisations need AI they can actually trust. That starts with being transparent about our own posture, before we are even generally available.

Certifications and frameworks

GDPR

Live

Built to the GDPR from day one, with data kept in EU jurisdiction and a tailored documentation pack per deployment.

EU AI Act

Live

Risk classification and transparency tooling aligned with the AI Act as its obligations phase in.

ISO 27001

In progress

Information-security management certification in preparation ahead of general availability.

SOC 2 Type II

Planned

Planned for enterprise customers; controls are being designed against the Trust Services Criteria.

Our security principles

Data stays in the EU

Inference and storage run on EU-sovereign infrastructure. Your data does not leave jurisdiction.

No training on your data

Your prompts and documents are never used to train shared models. Your data is yours.

Encryption everywhere

Data is encrypted in transit and at rest, with key handling designed for sovereignty.

Least-privilege access

Role-based access and full audit logging mean every action is accountable.

Configurable retention

You decide how long chats and documents are kept, with deletion you can prove.

No lock-in

Open-source models and neutral infrastructure keep you free to leave with your data.

Sub-processors
ProviderPurposeLocation
vanafterGPU compute and model hostingEU (Germany)
VercelWebsite and waitlist hostingEU regions

We keep this list short and EU-focused on purpose. We will notify customers before adding any sub-processor that handles personal data.

Data processing agreement

Need our DPA for your records or procurement? Read the current template here, or print it for signature. A countersigned version is available to customers on request.

Read the DPA
One arrow. One direction. Forward.

Bring AI into your business, without giving up your data.

Join the waitlist. We're onboarding GDPR-sensitive SMEs across Europe.