SECURITY & ARCHITECTURE · SWISS MADE
Built for absolute professional secrecy
Silex is engineered around the lawyer's duty of confidentiality. Your data is stored on a Swiss-owned sovereign cloud, encrypted at rest with keys we alone control, and never used to train AI models.
Swiss data sovereignty
Where your data lives — and where it never goes.
InfomaniakGenève
Data at rest
Azure Zurich (CH Nord)
Compute only
Keysisolated vault
Silex-held
CLOUDUS CLOUD Act
Out of reach
- 100% hosted in Switzerland
- AES-256 at rest · TLS 1.2/1.3
- Zero client data on Azure
- Never used to train models
THREE CORE PRINCIPLES
Confidentiality, engineered in
Everything in the Silex architecture follows from the lawyer's duty of professional secrecy. It rests on three principles.
- Sovereignty
- Privacy
- Control
SECURITY AT A GLANCE
Every layer, accounted for
Data residency
Infomaniak, Geneva: 100% Swiss-owned sovereign cloud for all data + backups. Processing on Azure, Switzerland North.
Data storage
No client data stored on Azure. Azure is compute/processing only; all persistent data lives on Infomaniak.
Database
PostgreSQL on Infomaniak, encrypted at rest with LUKS2 AES-256-XTS; SSL-only with SCRAM-SHA-256 auth.
Data in transit
HTTPS with TLS 1.2 / 1.3. Plaintext communication is not permitted at any layer.
Data at rest
AES-256 (LUKS2 AES-256-XTS volumes); keys held in an independent, isolated vault.
File encryption
Uploaded files encrypted at the application layer before upload — the host never sees file content.
Authentication
SSO via Microsoft Entra ID, SAML, OpenID Connect. 2FA available (disabled by default for now).
AI data privacy
Self-hosted LLMs — no data sent to external AI providers. User data never trains the models.
Multi-tenant isolation
Each organization gets its own isolated RAG silo — a dedicated table per org, never mixed.
Backups & retention
Encrypted backups (AES-256-CBC) kept 14 days with point-in-time recovery; logs kept 30 days, in CH.
Operations
Run in-house by the Silex DevOps team via Terraform + Ansible. No third-party managed access.
Assurance
Independent pen-test by Seculabs, Dec 2025 — no breach. ISO 27001 targeted for Q3 2026.
PRIVACY BY DESIGN
Your data stays yours. Always
CERTIFICATION & ASSURANCE
Independently tested. Continuously hardened
ISO 27001
The international standard for information security management. Audit evidence is being collected in Vanta; certification targeted for Q3 2026.
In progress · Q3 2026
GDPR & FADP
Swiss hosting on a Swiss-owned provider aligns with the Swiss Federal Act on Data Protection and EU GDPR residency expectations.
Aligned
Penetration testing
Independent tests annually and after every major update. December 2025 by Seculabs, no unauthorized access, no critical vulnerabilities.
Annual · last Dec 2025
Service availability
A minimum 99% availability SLA across UI, auth, AI inference and search. Post-incident reports for outages over one hour.
99% rolling annual
LATEST PENETRATION TEST
No breach. No critical findings
Our December 2025 test by Seculabs covered external attack surfaces, authentication, API endpoints and network segmentation. No unauthorized server access was achieved.
0 Breaches
no unauthorized access to our servers
Annual
and after every major architecture change
Dec. 25
most recent, by Seculabs, an independent firm
FAQ
The essentials on confidentiality, sources and pricing. For everything else, our team is one demo away.
Exclusively in Switzerland. All client data and backups live on Infomaniak, a 100% Swiss-owned sovereign cloud in Geneva, keeping them within Swiss jurisdiction and outside the reach of foreign legislation such as the US CLOUD Act. Azure (Zürich) is used for processing only and stores no client data.
In transit with TLS 1.2/1.3, and at rest with AES-256 (LUKS2 AES-256-XTS) plus an independent second layer at the storage provider. Uploaded files are encrypted at the application layer before upload, so the host never sees their content. Encryption keys are held in an isolated vault that only Silex can open.
Yes, at any time — question by question, or by removing the entire profile with all associated data. Deletions leave the live database immediately and age out of encrypted backups within the 14-day backup window.
Never. User conversations and documents are never used to train or fine-tune AI models. Our models run self-hosted and operate solely on system-level training data, so no data is sent to external AI providers.
A mode for maximum confidentiality: requests run in Incognito persist nothing — not in the database, backups, or logs. By default, conversation history is encrypted with AES-256 and held in Switzerland; Incognito leaves no trace at all.
ISO 27001 certification is in progress, targeting Q3 2026, with evidence being collected in Vanta. In the interim, our architecture is validated by independent annual penetration testing — the most recent (Seculabs, Dec 2025) found no breach — and aligns with the Swiss FADP and EU GDPR.
Serious about secrecy?
Start your free trial today, or talk to our experts about your firm's security and architecture requirements.