Skip to content
Mineo
Security & compliance

AI rollouts that pass legal review by design.

Your data never trains a model. Every interaction is permissioned, logged and auditable. GDPR and the EU AI Act are covered natively so your AI program isn't stuck waiting on compliance sign-off.

Trusted by design

Your data, protected at every layer

Never used to train models

Prompts, documents and data sources are never used to train third-party models. You decide what each provider can see.

Hosted where you need it

Run in the EU or in the region your policies require β€” MINEO deploys on the cloud you choose.

Encrypted in transit and at rest

Data is encrypted on the wire and in storage, with access scoped by permissions on every resource.

Deploy where your data has to live

Control beats a logo. MINEO runs on the cloud and region you choose β€” including inside your own cloud account.

EU-hosted

Managed cloud

EU-hosted, multi-tenant SaaS. The fastest way to start, with your data kept in Europe.

AWS Β· Azure Β· GCP

Your own cloud

Deploy MINEO in your own AWS, Azure or GCP account, inside your security perimeter and policies.

Data residency

Region of your choice

Pin data residency to the region your regulations require β€” your data never has to leave it.

Four security principles

Protected data

Prompts and documents never train external models. You choose what is shared and with which provider.

Permissions & access

SSO, role-based access, granular permissions on assistants, data sources and documents. Each person sees only what they should.

Traceability

Audit logs of every interaction by user, model, agent and use case. Ready for internal audits and regulatory reviews.

Governance

Common policies that end Shadow AI and bring every team into one controlled environment.

Compliance

How MINEO helps you stay compliant

GDPR and the EU AI Act β€” covered by design so your AI rollout doesn't stall on legal review.

GDPR

EU Regulation 2016/679 Β· AEPD

Lawful processing, data minimization, right to be forgotten, portability, 72h breach notification. AEPD is Europe's most active regulator: fines up to €20M or 4% of global turnover.

What MINEO gives you

  • Signed DPA
  • auto-generated Records of Processing Activities (ROPA)
  • pre-filled DPIA template (Art. 35)
  • verifiable deletion on request
AI Act

EU Regulation 2024/1689 Β· AESIA

High-risk obligations applicable from August 2026. Covers HR, credit, education, critical infrastructure. Fines up to €35M or 7% of global turnover β€” higher than GDPR.

What MINEO gives you

  • Automatic risk classification per use case
  • technical documentation (Art. 11)
  • risk management system (Art. 9)
  • logging records (Art. 12)
  • FRIA template (Art. 27) for deployment

Frequently asked questions

Is my data used to train AI models?

No. Your prompts, documents and data sources are never used to train third-party models. You control what each provider receives.

Where is my data hosted?

By default in the EU. You can also deploy MINEO in your own cloud or pin it to the region your policies require.

Can we deploy MINEO in our own cloud?

Yes. MINEO runs on AWS, Azure or GCP β€” including inside your own cloud account, under your security perimeter.

Do you hold ISO 27001 or SOC 2 certification?

Not yet β€” we're working toward formal certification. In the meantime you keep control by deploying in your own cloud and region, with data that never trains models, granular permissions and a full audit trail.

How is access controlled?

SSO, role-based access and granular permissions on assistants, data sources and documents β€” plus an audit log of every interaction.

Which regulations does MINEO help with?

GDPR and the EU AI Act, by design: data protection, permissions, traceability and the documentation your legal team needs.

Can we delete our data?

Yes. You can remove your data at any time, and we delete it on request.

Take your AI through legal review without losing months.

We'll walk your DPO and CISO through how MINEO maps to GDPR and the EU AI Act.