Légal

Security & Governance

AIT Security
Security

Trust cannot be imposed. It must be substantiated.

Data Location and Processing

AIT hosts client data on Google Cloud Platform,
on servers located in France.Each country where AIT operates
has its own data storage, separate from other countries.
This segregation applies specifically to Metropolis, used by
institutions and government bodies.
Technical details regarding encryption (AES-256)
are provided upon request as part of a vendor audit.

Subcontracting and Data ResaleAIT does not sell any client data to third parties, including Meta, Google,
or any data broker.
AIT does not share data between
clients: the platform connects identified accounts
but never transfers raw data out of the owner's account.
A complete list of technical subcontractors is available
upon request.

Reversibility

Users can delete their accounts at any time. Deletion
results in the complete removal of their data from the
AIT platform.
The exact timeframe for final deletion is 3 years.

Product Reliability and Human Oversight

ARTEMIS, AIT’s AI agent, analyzes contractual documents but
does not make decisions on the user's behalf.
Each ARTEMIS report links every statement to its source page in the original
contract and explicitly recommends verification by
an insurance professional before any major decision is made.

Technological Resilience

AIT relies on four distinct artificial intelligence
pipelines: two proprietary and two open-source.
This distributed architecture avoids reliance on any single AI provider.

As an AI research laboratory with a dedicated R&D division, AIT designs its own SLM and hybrid models to replace the LLMs currently used by the company.

Infrastructure and certifications

AIT’s infrastructure is autonomous and closed: all access, including
via the API, requires an identified account subject to usage
guidelines, with potential sanctions for non-compliance.
AIT’s hosting provider, Google Cloud Platform, holds ISO 27001,
ISO 27017, ISO 27018, and SOC 2 certifications.
Obtaining AIT-specific certification (SOC 2 or ISO 27001) is a medium-term
goal; it will be publicly announced once achieved.

AIT Governance
Governance

Neutrality, forever.

AIT is neither an insurer, nor a broker, nor a manager of
insurance contracts. AIT never will be. This is a fundamental commitment,
not a commercial stance: we do not sell any policies, and we
do not receive any commission on the contracts analysed.

This neutrality guarantees analyses free from conflicts of interest.

Human oversight: non-negotiable
ARTEMIS analyses. It never makes decisions on your behalf.
Each report cites its sources, page by page, and recommends
that it be verified by a professional before any
major decision is taken.

Who advises us
An Advisory Board comprising senior executives from both sides of the market,
insurance and business.
Some were our clients before becoming advisers.

A scientific and ethics committee is currently being set up,
to complement the Advisory Board.