
Security

Security Note
Your data such as inputs (prompts and documents) and outputs (Noxtua’s completions) are safe with us. Your data:
is NOT available to other customers
is NOT used to train, retrain, or improve Noxtua models (if you’re interested in providing us data for training, you can join our Legal AI Alliance)
is NOT used to train, retrain, or improve any other AI models
can NOT even be seen by us in plain text
Noxtua is operated by Noxtua AG. The tech company is certified according to BSI C5, ISO 27001, 9001, 27018, 27017, and is the first German company to be certified according to ISO 42001. It has no connection to US cloud providers. Data provided by users is processed exclusively on secure servers by the German partners Open Telekom Cloud (by Deutsche Telekom) and IONOS to ensure resilience and sovereignty.
Security Note
Your data such as inputs (prompts and documents) and outputs (Noxtua’s completions) are safe with us. Your data:
is NOT available to other customers
is NOT used to train, retrain, or improve Noxtua models (if you’re interested in providing us data for training, you can join our Legal AI Alliance)
is NOT used to train, retrain, or improve any other AI models
can NOT even be seen by us in plain text
Noxtua is operated by Noxtua AG. The tech company is certified according to BSI C5, ISO 27001, 9001, 27018, 27017, and is the first German company to be certified according to ISO 42001. It has no connection to US cloud providers. Data provided by users is processed exclusively on secure servers by the German partners Open Telekom Cloud (by Deutsche Telekom) and IONOS to ensure resilience and sovereignty.
Security Note
Your data such as inputs (prompts and documents) and outputs (Noxtua’s completions) are safe with us. Your data:
is NOT available to other customers
is NOT used to train, retrain, or improve Noxtua models (if you’re interested in providing us data for training, you can join our Legal AI Alliance)
is NOT used to train, retrain, or improve any other AI models
can NOT even be seen by us in plain text
Noxtua is operated by Noxtua AG. The tech company is certified according to BSI C5, ISO 27001, 9001, 27018, 27017, and is the first German company to be certified according to ISO 42001. It has no connection to US cloud providers. Data provided by users is processed exclusively on secure servers by the German partners Open Telekom Cloud (by Deutsche Telekom) and IONOS to ensure resilience and sovereignty.

Security first
Lawyers must protect their client’s personal data, trade secrets, and other sensitive information. Therefore, their tools need to meet very strong security and privacy standards. Noxtua provides full compliance for highly regulated industries and professional secrecy holders such as lawyers, accountants, and doctors, who are required to maintain the confidentiality of information shared with them by their clients or patients.




Professional Secrecy
To make Noxtua legally compliant for the highly regulated legal domain, Xayn went the extra-mile and exceeded established data security standards such as the GDPR. Noxtua fulfills the high requirements for the protection of professional secrecy under




Compliance at Noxtua
Noxtua is GDPR-compliant and is certified according to BSI C5, ISO 42001, 27001, 9001, 27018, 27017 and more. Visit our Trust Center to learn more.







Secure Cloud
The GDPR-compliant Legal AI Noxtua protects the security and digital privacy of its users. Uploaded information and documents are only processed in the working memory and are not stored long-term. Communication and data processing are fully encrypted in so-called Trusted Execution Environments (TEE) with confidential computing. Data processing is also strictly role-based. Only authorized users within your organization have access. Access by third parties or system operators is technically impossible.
Noxtua has built its own AI infrastructure to protect sensitive data and works with strong, certified European partners to remain resilient and sovereign. With the official market launch of the Legal AI Workspace Beck-Noxtua on November 26th, 2025, user data will be processed exclusively on secure servers by the following partners from Germany:
IONOS, Europe's leading digitalization partner, certified critical infrastructure provider (KRITIS, including by BSI C5) and provider of the “Bundescloud,” a particularly strictly secured cloud solution certified by the German Federal Office for Information Security (BSI).
Open Telekom Cloud (OTC) by the Deutsche Telekom AG, Europe's leading public cloud, which is BSI C5 certified for use in critical infrastructures (KRITIS) and also complies with the industry-specific provisions of the German Criminal Code, the Social Security Code, and the Federal Financial Supervisory Authority (BaFin).
Secure Cloud
The GDPR-compliant Legal AI Noxtua protects the security and digital privacy of its users. Uploaded information and documents are only processed in the working memory and are not stored long-term. Communication and data processing are fully encrypted in so-called Trusted Execution Environments (TEE) with confidential computing. Data processing is also strictly role-based. Only authorized users within your organization have access. Access by third parties or system operators is technically impossible.
Noxtua has built its own AI infrastructure to protect sensitive data and works with strong, certified European partners to remain resilient and sovereign. With the official market launch of the Legal AI Workspace Beck-Noxtua on November 26th, 2025, user data will be processed exclusively on secure servers by the following partners from Germany:
IONOS, Europe's leading digitalization partner, certified critical infrastructure provider (KRITIS, including by BSI C5) and provider of the “Bundescloud,” a particularly strictly secured cloud solution certified by the German Federal Office for Information Security (BSI).
Open Telekom Cloud (OTC) by the Deutsche Telekom AG, Europe's leading public cloud, which is BSI C5 certified for use in critical infrastructures (KRITIS) and also complies with the industry-specific provisions of the German Criminal Code, the Social Security Code, and the Federal Financial Supervisory Authority (BaFin).
Secure Cloud
The GDPR-compliant Legal AI Noxtua protects the security and digital privacy of its users. Uploaded information and documents are only processed in the working memory and are not stored long-term. Communication and data processing are fully encrypted in so-called Trusted Execution Environments (TEE) with confidential computing. Data processing is also strictly role-based. Only authorized users within your organization have access. Access by third parties or system operators is technically impossible.
Noxtua has built its own AI infrastructure to protect sensitive data and works with strong, certified European partners to remain resilient and sovereign. With the official market launch of the Legal AI Workspace Beck-Noxtua on November 26th, 2025, user data will be processed exclusively on secure servers by the following partners from Germany:
IONOS, Europe's leading digitalization partner, certified critical infrastructure provider (KRITIS, including by BSI C5) and provider of the “Bundescloud,” a particularly strictly secured cloud solution certified by the German Federal Office for Information Security (BSI).
Open Telekom Cloud (OTC) by the Deutsche Telekom AG, Europe's leading public cloud, which is BSI C5 certified for use in critical infrastructures (KRITIS) and also complies with the industry-specific provisions of the German Criminal Code, the Social Security Code, and the Federal Financial Supervisory Authority (BaFin).

Your standards are high.
Get the Legal AI you need.
Subscribe to our newsletter for updates








Your standards are high.
Get the Legal AI you need.
Subscribe to our newsletter
for updates








Your standards are high.
Get the Legal AI you need.
To proceed with your request, please inform us in advance which jurisdiction best suits you.
Subscribe to our newsletter for updates
Contact
To proceed with your request, please inform us in advance which jurisdiction best suits you.







Paris
•
Berlin
•
Zagreb
•
Munich




