Security & Privacy

Your data stays in Europe.
Under your control.

Vibranius runs on a dedicated server that is yours alone — in the European Union, encrypted, with AI that is never trained on your content. Here is exactly how we protect it.

Primary hosting in Finland

Workspace content is hosted in Finland; some subprocessors may process limited data as described in the published list.

Your own dedicated server

A dedicated server in Finland, just for you. No shared infrastructure, no mixing with other clients' data.

Never trained on your data

Your documents are never used to train any AI model. Ever. This is guaranteed by contract.

Not the public ChatGPT

AI runs through a governed enterprise channel in the EU — never the public ChatGPT your staff might paste into.

Protected in transit

Data in transit is protected with TLS 1.2 or later. Stored data is protected by access controls and host-level security measures.

You own your data

Export everything or delete it permanently, anytime. It is yours — we never lock you in.

Exactly where your data goes

We believe transparency is the foundation of trust. Here is the complete journey of your data — nothing hidden.

1

Stored on your dedicated server (EU)

Your files, documents, and accounts are hosted in the dedicated workspace in Finland. See the data flow and subprocessor list for documented exceptions.

2

Documented AI subprocessors

When you submit content to an AI feature, the configured provider processes that content. Provider, region, and retention details are maintained in the current subprocessor list and may vary by enabled feature.

3

Never sold, never shared, never advertised

Your content is never sold, never shared with third parties for their own use, and never used for advertising. There is no tracking on our services.

Your team already uses AI. The only question is: on whose server?

Without a controlled workspace, your clients' data ends up in each employee's personal ChatGPT — ungoverned, with no agreement on how it is used or stored. Vibranius replaces that with one governed, European channel where your data stays in the EU and is never used to train AI. You stop the leak without slowing your team down.

Security controls

Sub-processors — full transparency

These are the only third parties involved in delivering Vibranius, what each one does, and what data it can access.

ProviderRegionPurposeData accessed
HetznerFinland (EU)Dedicated server hostingHardware level only — no access to your content
AI providers — current listSee current listOptional AI processingContent submitted to an AI feature; region and retention depend on the configured provider.
StripeUSAPayment processingBilling information only — never your documents
Let's EncryptUSASSL/TLS certificatesDomain names only — no personal data

Your document content is only ever processed by the AI sub-processor above, within the EU, and never used for training. It is never shared with any other party.

Compliance & documents

Vibranius supports GDPR obligations through data minimisation, documented safeguards, and a Data Processing Agreement available for every client. Read the details:

Privacy Policy Data Processing Agreement Sub-processors

Have a security or compliance question? We answer plainly.

Talk to us