Data sovereignty & control

Run it securely in your environment.

On-premises, private cloud or customer-specific infrastructure: roles, permissions, audit, versioning, backups and traceable approvals are part of the platform concept. Specific GDPR compliance depends on how the system is actually operated and which services are integrated.

▤

On-premise

Operation in your own infrastructure and network.

☁

Private cloud

Dedicated environment with controlled data flow and access.

AI

Local AI

Your own or local models for sensitive documents and production knowledge.

◎

Roles & permissions

The API and user interface check permissions – not just hidden buttons.

▤

Audit & versions

Log critical changes, approvals and technical states in a traceable way.

↻

Backup & documents

Back up the database and document storage together; deliberately account for external files.

Roles & permissions

Fine-grained access for teams, sites and functions.

Auditable approvals

Critical decisions with human approval and a traceable history.

Logging

Document actions, changes and system activity transparently.

Secure integrations

Encrypted connections, modern authentication and segmented data flows.

No black box. A strong team instead.

AI analyzes data and makes suggestions. People review, decide and take responsibility. Process logic remains controllable.

Discuss security →
secondFactory can support privacy-friendly and GDPR-compliant operating models. A binding legal assessment must always take into account the specific customer configuration, hosting environment, data types and connected services.