Your team wants ChatGPT. Your compliance says no.
NDAs, professional secrecy, customer requirements, export control: the obligations are real, and most AI tools cannot meet them. MAIA is built so your teams get the same capability without a single document crossing the boundaries you have committed to.
All three run five years post-termination. Only the Meridian NDA carves out residual knowledge, which conflicts with your internal standard.
Two possible ways of MAIA
Pick one, or run both side by side for different needs.
Managed Service
MAIA takes care of everything.
On Premise
You run it, we support you.
Tell us which obligations apply on your side and we will map it with you.
Map my setupThe answers your security review will ask for.
Sovereignty is the headline. Underneath it sits the ordinary work of enterprise security: policies written, controls in place, evidence collected continuously.
Confidentiality
Access security
Network & endpoint security
Availability & incident response
Change & vulnerability management
Risk, vendors & standards
Every control above is continuously monitored and evidenced. Policies, subprocessor list, DPA and Art. 32 GDPR measures are available on request; detailed architecture documentation under NDA.
Companies where confidentiality is not optional.
You do not have to be a defence supplier for this to apply. One NDA, one research file, one customer clause is enough to make the question relevant.
Engineering IP that would be a real risk if it left the EU.
Clinical research and patient data that must be processed in-house.
Professional secrecy obligations, including § 203 of the German Criminal Code.
Export control and defence contracts that rule out cloud use entirely.