Security & Compliance

Your knowledge is your power. We guard it like it's ours.

For enterprises that demand precision, trust, and control in the age of AI: built in Germany, we turn compliance into a strategic asset, not a checkbox.

Compliance at a glance
  • ISO 27001 certified information security, audited yearly
  • 100% EU data residency exclusively in EU regions
  • GDPR + AI Act compliance as a design principle, not a retrofit
  • Self-hosted entirely in your own cloud, if you prefer
Certificates and reports in the Trust Center
Principles

Security at every layer.

Genow doesn't just secure data. We protect your competitive edge, with control, traceability and EU compliance from hosting through to access rights.

Enterprise-grade security

Yearly infrastructure audits and transparent security controls. Your data is guarded to the highest global standards.

Self-hosted deployment

Run Genow in your private cloud. Full control, air-gapped security.

Zero-trust access

Enforce SSO, 2FA or SAML authentication. Your existing corporate logic becomes your key.

EU data sovereignty

All data is processed and stored exclusively on EU servers (Google Cloud EU). GDPR compliance, guaranteed.

EU AI Act readiness

Built with data-processing purpose controls at its core, supporting key GDPR and EU AI Act requirements. State-of-the-art AI, implemented responsibly and lawfully.

Granular permissions

Genow integrates with Microsoft Entra ID and Google IAM to manage access controls. Enterprise-grade security keeps your data protected.

Private tenant isolation

Strict application-layer segregation. Your data never shares space with other customers.

Customizable indexing

Decide exactly what to index and how. Align search scope precisely with your compliance needs.

Audit-ready trails

Full activity logs for every query, edit and integration. Prove compliance in seconds.

Deployment

Your data, where you want it.

Genow runs where your data is allowed to be. The product is identical either way; what changes is only the question of who operates the infrastructure underneath it.

Fully managed

SaaS, operated by us

Operated by us in EU regions of Google Cloud. Nothing to set up on your side, and the ISO 27001 controls of our certified environment apply from day one.

  • Fastest to get started
  • EU regions only
  • Updates and monitoring included
Highest control

Self-hosted, in your cloud

Genow runs inside your own account on Google Cloud, Microsoft Azure or AWS. Your data never leaves it, and your existing network rules and key management continue to apply unchanged.

  • Google Cloud, Azure or AWS
  • Your account, your keys
  • Your network policies apply
  • Air-gapped operation possible
Model freedom

Model agnostic by design. No vendor lock-in.

Every leading model, one workspace

Gemini, GPT, Claude and other models work behind your agents. You commit to no single vendor.

The right model for each task

Every task runs on the model that fits it. High quality, predictable cost.

Always the current generation

A new model arrives, your agents move with it. One setting, not a migration project.

Your own self-hosted model

Genow also works with the model you host yourself. Same agents, same company context.

Your knowledge

Your knowledge is what makes the model useful.

Connect SharePoint, Confluence, Google Drive, your CRM and your ERP, and every agent works from your real documents, your terminology and your permissions instead of a generic prompt. That layer belongs to you, and it stays exactly as it is when the model underneath changes.

Architecture

Every layer of the architecture stays under your control.

Genow sits as a closed system between your endpoints and your own data infrastructure. Nothing leaves the space you define.

Data handling

What we never do with your data.

We do not train models on your data

Your documents, your questions and the answers Genow produces are not used to train or fine-tune any model, and they are not passed on for anyone else to train on.

We do not move your data out of the EU

Storage, search index and model inference all stay in EU regions. There is no third-country transfer quietly happening behind the answer you see.

We do not become a second, uncontrolled copy

Genow indexes your sources instead of replacing them. Remove a document where it lives and it stops appearing in Genow's answers too.

We do not work around your permissions

Nobody sees through Genow what their own systems would deny them. Access is checked on every query, not once at import, and every check is logged.

Benefits

Confidence in every customer answer.

Genow answers from your own approved sources, and the origin of every statement stays traceable. Your teams respond to customers faster, and every answer holds up under review.

High-precision, contextual answers in seconds

Retrieve verified, up-to-date insights straight from SharePoint, Confluence and Drive, eliminating guesswork.

AI that closes knowledge gaps in real time

Missing or outdated information is detected automatically, so your team always acts with confidence.

Secure, compliant and cost-efficient

Replace isolated AI tools with one central AI Workspace: GDPR-compliant and built for enterprise-scale deployment.

FAQ

Where is our data stored and processed?

Exclusively in EU regions of Google Cloud. Document storage, the search index and the model inference all stay inside the EU. If you run Genow self-hosted, everything stays inside your own cloud account instead.

Is our data used to train AI models?

No. Your documents, your questions and the answers Genow produces are not used to train or fine-tune any model, and they are not passed on for anyone else to train on.

Which AI models does Genow use, and can we choose?

Genow is model agnostic. Leading commercial models run in production today, open-weight models can be connected on request, and you can also run your own self-hosted model.

Which languages does Genow work in?

There is no fixed list of languages. The agents answer in the language you write in, and they switch when you do. You can also work in one language and ask for the result in another, for example your notes in German and the email to the customer in French.

Which sub-processors are involved?

The current list of sub-processors, each with its purpose and its location, is documented in our Trust Center, together with the certificates and reports behind it.

How are permissions handled?

Genow inherits them live from your own directory (Microsoft Entra ID or Google IAM) and checks them per query, not once at import. If someone loses access to a document at the source, the next answer in Genow no longer contains it.

Which documents can we get for our security review?

The ISO 27001 certificate, our description of technical and organisational measures, the data-processing agreement and our EU AI Act documentation. They are available in the Trust Center. Should your review require anything further, we will gladly provide it on request.

Trust Center

See how Genow makes complex sales work easier.

See in 30 minutes how Genow helps your team find the right products, prepare deals, and create tailored sales materials.