SECURITY

Your data stays in Germany.

Runs on our own dedicated server in Germany — no black-box vendor. GDPR-compliant, with contractual confidentiality. A German partner you can reach directly.

The data flow

In, processed, nothing to US clouds.

Requests come in over a TLS-encrypted connection and are processed entirely on our server in Germany. Nothing leaves to clouds outside the EU unless you explicitly approve it.

Customer / website

Request via browser

TLS
flowsulting server · Germany · Caddy / TLSin the EU
App
Dashboard & website
Ollama
AI chat local — part of the stack, active on dedicated-server builds
n8n
Automations
Postgres
Database
TTS
Voice, optionally local
Docker isolation · keys held by flowsulting · audit log
approved only

US clouds / outside EU

Nothing — unless explicitly approved

Transparency

What's actually used. Honestly.

Most vendors hide their subprocessors. Here is the full list — and for each one, whether it can be avoided locally.

Hosting / server (Germany)
Our own dedicated server in a German data center (EU) — the whole stack runs here.
Foundation — in Germany
Claude / DeepSeek / OpenAI (language processing)
External language model — today's default for the actual text generation, via encrypted request.
Yes — as a dedicated fully-local build via Ollama, on request
Edge-TTS (voice)
Free neural voice — the default when no local TTS is set.
Yes — local via TTS service
Default: AI chat local via Ollama, voice optionally local. External models only if you want them.
Control

You keep your hand on the switch.

Human approval threshold

Before any sensitive action — email, booking, payment — the system waits for your yes.

Data export & handover

Your data belongs to you. On request we export it anytime and hand it over cleanly — no vendor lock-in.

Audit log

Every action is logged and stays traceable — who, what, when.

Legally sound

Clean, before it goes live.

GDPR and confidentiality aren't an appendix but the foundation — especially for firms and practices with sensitive data.

Data in the EU · server in Germany

GDPR

Data storage on our own server in Germany (EU). Language processing by default sends encrypted requests to an AI provider today; zero third-country transfer requires the dedicated local-server build.

Confidentiality

Contractual confidentiality over everything we see — your client and customer data stays yours. A German partner you can reach directly.

Let's talk for 30 minutes about your business.

Free AI audit: we show you what can be automated in your business — the roadmap is yours, even without a deal.

🎙️ Talk to the AI assistant