Trust Center

Everything your compliance and IT team needs before rollout.

MeetingWise is built for regulated advisory firms. This page documents how we handle data, governance, AI transparency, and security so your team can evaluate with confidence before a single meeting is recorded.

What you can rely on

Four commitments that underpin every deployment.

Data stays in Europe

MeetingWise runs entirely on EU infrastructure. Data centers, AI models, and processing all remain within the European Economic Area. There is no data transfer outside the EEA without explicit legal safeguards. Customer data stays customer data. It does not become part of a shared model, a training set, or an aggregated dataset.

Advisors stay in control

MeetingWise supports the advisor's work. It does not make advisory decisions, generate autonomous recommendations, or finalize output without human review. Every summary, action point, and compliance check is presented as a draft for the advisor to review, edit, and approve. The AI proposes. The professional decides.

Your data stays yours

Client data is never reused for model training, not for MeetingWise, not for any other product, not for any third party. Retention and deletion rules are clearly defined. Audio recordings are retained for up to two days to protect the user in case of an error or if additional custom work is needed, and then deleted. Transcripts and summaries follow configurable retention periods. Data flows are documented and audit-ready.

Everything is documented

Governance framework, data handling policies, AI use case documentation, EU AI Act positioning, contractual documents, and security overviews are all available for review. We do not ask firms to trust a product they cannot examine. The documentation exists so your compliance, risk, and IT teams can evaluate before anything goes live.

Governance framework

Six domains. Designed for organizations that need certainty.

The AI RiskWise governance framework covers the six areas that regulated organizations evaluate before adopting AI. Each domain is documented and available for review as part of the trust package.

01

Domain 1: Model control

Continuous quality monitoring of AI output. Safeguarded model updates with validation before deployment. Documentation through Model Cards that describe capabilities, limitations, and intended use. Transparency on what the model can and cannot do. Human oversight required by default, not as an option, but as a product requirement.

02

Domain 2: Data management

EU data residency with no exceptions. Audio recordings are retained for up to two days to protect the user in case of an error or if additional custom work is needed, and then deleted. Transcripts and summaries stored for 30 days, configurable on Professional and Team plans. No reuse of customer data for model training or improvement. Data flows documented and ready for audit or DPIA review.

03

Domain 3: Cybersecurity

Encryption in transit and at rest. Role-based access control with SSO and multi-factor authentication. Audit logging on all user and system activity. 24/7 security monitoring. Prompt-injection mitigation measures. Secure API integrations with documented endpoints.

04

Domain 4: Legal and regulatory

GDPR-aligned by design, not retrofitted. Aligned with transparency and documentation requirements under the EU AI Act for Limited Risk AI systems. Data Processing Agreement, Standard Contractual Clauses, and DPIA support available. Contractual responsibilities clearly defined between AI RiskWise and the customer.

05

Domain 5: AI ethics

Transparency by default. The advisor always knows when AI is producing output and what that output is based on. Fairness checks on model behavior. Source references provided for explainability so the advisor can trace output back to the conversation. No autonomous decision-making. Human intervention is always possible, and in practice, always required.

06

Domain 6: Geopolitical and IT risk

100 percent EU hosting. European AI model supply chain. No dependency on non-EU AI providers for core functionality. This eliminates exposure to cross-border data transfer risk, foreign government access risk, and supply chain dependencies that many generic AI tools carry.

EU AI Act

MeetingWise is classified as Limited Risk AI.

Under the EU AI Act, MeetingWise falls into the Limited Risk category. No high-risk obligations apply. MeetingWise does not make decisions that affect individuals' legal rights, access to services, or financial outcomes. It supports advisory work. It does not perform it.

Transparency obligations are met by design. Users are informed that AI is involved in generating output. Source references and documentation are provided. The advisor reviews all output before it is used.

Human oversight is embedded in the product architecture, not bolted on as a compliance measure. The advisor is always in the loop, always in control, and always responsible for the final output.

For compliance officers evaluating AI Act alignment: the AI Product Information Document (AIPID) provides a detailed breakdown of how MeetingWise maps to EU AI Act requirements. It is available in the documentation section below or on request.

Documentation

Review everything before you commit.

The documents below are available for customers and evaluation teams. Directly linked documents can be downloaded now. Documents marked on request are shared via legal@airiskwise.com, typically within one business day.

Some documents are currently available in English or Dutch. Contact legal@airiskwise.com for specific language requests.

Request the complete trust package.

Get the full documentation set, including the governance framework, DPA, AIPID, security overview, and supporting materials, sent to your compliance or IT team in one package.

Requests are routed to legal@airiskwise.com. No marketing pressure. Just the material your team needs.

Data lifecycle

What happens to data at every stage.

01

Recording

The advisor records the client conversation using MeetingWise. Audio is captured and encrypted in transit.

02

Processing

The audio is transcribed and processed by EU-hosted AI models. No data leaves the EEA during processing.

03

Output generation

MeetingWise produces structured output: summary, action points, compliance check, and decision points. All output includes source references to the original conversation.

04

Advisor review

The advisor reviews, edits, and approves all output. Nothing is stored as final until the advisor confirms.

05

Audio deletion

Audio recordings are retained for up to two days after processing to protect the user in case of an error or if additional custom work is needed, and then deleted. They are not archived or retained beyond that period.

06

Output retention

Transcripts and summaries are retained for 30 days by default or a custom period on Professional and Team plans. After the retention period, data is permanently deleted.

07

Export and use

Approved output can be exported for use in the advisor's CRM, file system, or document management process. Once exported, the data is governed by the customer's own retention policies.

FAQ

Questions we hear from compliance, risk, and IT.

Is MeetingWise compliant with the EU AI Act?

Yes. MeetingWise is classified as Limited Risk AI. It is designed with transparency, human oversight, and documentation aligned with EU AI Act requirements. The AIPID document provides a full mapping.

Do you use customer data for model training?

No. Customer data is never used to train, fine-tune, or improve AI models, not for MeetingWise, not for any other product, not for any third party.

Where is data processed and stored?

Exclusively within the EU. All data centers, AI models, and processing infrastructure are EU-hosted. No data transfer outside the EEA occurs without explicit legal safeguards.

What retention periods apply?

Audio is retained for up to two days to protect the user in case of an error or if additional custom work is needed, and then deleted. Transcripts and summaries are stored for 30 days by default. Professional and Team plans support custom retention periods. Security and audit logs are retained for up to 365 days.

Do you support DPIA preparation?

Yes. We provide the data flow documentation, processing descriptions, and risk assessments needed for a complete DPIA. We can support your data protection officer during the preparation process.

Are your processes audit-ready?

Yes. Governance documentation, security overviews, audit logs, and technical notes are available to support internal audits, regulatory reviews, and external assessments.

Is MeetingWise suitable for legal stenography or official legal reporting?

No. MeetingWise is designed to support advisory documentation, not to replace legal stenography or produce legally binding records. The output is a professional support tool, not an official transcript.

How do you handle model updates?

Model updates go through a validation and safeguarding process before deployment. Changes are documented in the Model Card. We do not deploy model changes that could materially alter output quality without customer notification.

What happens if we stop using MeetingWise?

Your data is deleted according to the agreed retention period. No data is retained beyond the contractual terms. We can provide confirmation of deletion on request.

Can we conduct a security review before deployment?

Yes. Contact legal@airiskwise.com to arrange a security review, request additional documentation, or schedule a call with our team.

Contact

Need documentation, a security review, or DPIA support?

Our team is available to support your evaluation process. Whether you need specific documents, a walkthrough of the governance framework, or support preparing a DPIA, we respond within one business day.

Once your compliance and IT review is complete, your advisors can start a free 30-day pilot to evaluate MeetingWise with real conversations.

Learn more about the pilot
Trust Center | AI RiskWise