GDPR-compliant AI for German businesses — advised and built by one team.
We get you productive with Azure OpenAI, pseudonymization and staff training. Compliance DNA from running our own product (LiteLog).
Three problems we run into every week
ChatGPT risk
Your staff already uses ChatGPT — often with personal data. Without proper architecture this is a data-protection incident waiting to happen in regulated industries.
Consulting without execution
Pure data-protection consultants ship PDFs. Pure SaaS vendors ship tools without holding your hand. Neither is enough if you want to use AI productively and lawfully.
Compliance theater
Audits that change nothing. Trainings nobody remembers. We deliver architectures that pass audits because they take effect technically — not just on paper.
Three steps to productive AI
No buzzword pitch — a method we've been running on our own compliance product LiteLog for years.
- Step 01
Analysis
We listen first: which workflows, which data, which compliance constraints. The result is an honest recommendation — including 'not yet' if that's the right call.
- Step 02
Architecture
We design a GDPR-tight AI architecture for your case — model choice, pseudonymization, DPA, EU hosting. Written, reviewable, with effort estimate.
- Step 03
Implementation
We ship in 2-week increments. Train your staff. Hand over or keep operating it. Compliance documentation included at no extra cost.
Service tiers
Three stages — clear scope, individual proposals discussed in the intro call.
Deep-dive AI consulting topics
More detail on our most-asked-about themes — each page with a concrete architecture recommendation. Plus API integrations if you'd rather build AI into your systems than into a SaaS UI.
ChatGPT in business
Money pageArchitecture, staff guideline, use cases. Azure OpenAI in EU region.
Read more →ChatGPT GDPR-compliant
Pseudonymization, DPA-ready architecture, EU hosting. Practical playbook.
Read more →AI compliance
GDPR, EU AI Act, sector-specific rules — pragmatically documented.
Read more →AI workshop
Half- to two-day workshops with concrete use cases. Hands-on.
Read more →Azure OpenAI Germany
Region setup, Entra ID, quota management, monitoring. Production-ready.
Read more →API & integrations
DifferentiatorDirectly into your systems: DATEV, case management, practice management. Instead of a SaaS UI.
Read more →AI for your industry
Industries with strict data protection and professional secrecy duties — exactly where most AI tools don't belong and where our architecture pays off.
Law firms
§203 StGB, attorney-client privilege, drafting efficiency.
Read more →Medical practices
Patient data, professional confidentiality, anamnesis prep.
Read more →Tax advisors
Client data, professional code, document workflows.
Read more →Mittelstand
GDPR responsibility, clear ROI math, staff training.
Read more →Voices from our LiteLog customers
Direct evidence that compliance software runs in production at our place — not just in PowerPoint.
„Thanks to LiteLog we could prove we were at the right place at the right time, and that we did our job. Without that proof, we'd have paid 30,000 € in damages."
„The whole tool is well laid out and easy to use. Questions get answered quickly and without fuss. I can fully recommend it."
Frequently asked
How long does a typical AI rollout take?
From analysis to production usually 6–12 weeks. For more complex architectures (multiple departments, own models, sectoral compliance like KRITIS) 3–6 months. We deliver in 2-week increments so you see early whether it works.
Which AI models do you use?
By default Azure OpenAI (GPT-4o, GPT-5) in the EU region — because of the DPA, EU data residency and production-grade tooling. For more sensitive applications also local models (Llama, Mistral) or specialized providers like Aleph Alpha.
What is pseudonymization and why does it matter?
Pseudonymization replaces direct personal references (names, emails, addresses) with placeholders before the model processes them. The model never sees personal data — essential for GDPR compliance with client or patient data.
What sets you apart from pure data-protection consultants?
We build what we recommend. Pure data-protection consultants deliver reports — we deliver running systems. Our compliance DNA comes from our own product LiteLog, which we've operated since 2020 for KRITIS customers, care services and security firms.
Do you also operate and maintain the system?
Yes, optionally. On request we keep operating the AI architecture — including monitoring, model updates, quota management and training refreshers for new staff. Alternatively we hand over to your IT with thorough documentation.
Which industries do you focus on most?
Law firms (§203 StGB), medical practices and MVZ (patient data), tax advisors (client data), security services and critical-infrastructure operators (via LiteLog), plus Mittelstand with GDPR-sensitive workflows.
Pick a time
30 Minuten, unverbindlich, kostenlos. Wenn keiner der Slots passt, melden Sie sich gern per E-Mail oder Telefon.