Your data never leaves your infrastructure. The 100% on-premise platform to comply with the EU AI Act, GDPR and ENS: inventory, assessment, monitoring and compliance, with an AI copilot that operates everything by natural language, in one place.
European company · European infrastructure · Full data sovereignty · On-premise
Last 14 days · Updated 5 min ago
54
Integrated modules
11
Regulations covered
90+
Mapped requirements
100%
On-premise
Regulation, operational risk and sovereignty are now part of the same conversation.
The Digital Omnibus postponed the high-risk obligations (Annex III) from August 2026 to December 2, 2027, and product-safety AI to August 2028. More room to do it right, not to wait: identifying and registering high-risk systems remains an obligation, and a human reviewer does not automatically take a system out of Annex III scope.
Fines for non-compliance with the EU AI Act, or 7% of annual global turnover. For the public sector, sanctions include asset liability and disciplinary proceedings.
EU AI Act, GDPR, ENS, NIS2, ISO 42001, ISO 27001, LOPDGDD, NIST AI RMF, AI Liability Directive, DORA and the Spanish Organic Law on AI governance (2026). Kairos covers them all with 90+ mapped requirements.
Kairos deploys where your data lives. No external clouds, no sovereignty risks, no third-party dependencies for your most sensitive information.
City councils, ministries, regulatory bodies and European agencies
Credit scoring, fraud detection, risk models and AI-powered customer service
Assisted diagnosis, triage, clinical records management and predictive models
Predictive maintenance, grid optimisation and demand models
Any organisation with more than 10 AI systems in production
Firms advising their clients on AI regulatory compliance
Model validation under GxP, pharmacovigilance, drug discovery and clinical trials, with traceability for EMA, FDA and GAMP 5
From registry to explainability. Each pillar covers a critical dimension of AI governance required by the EU AI Act.
An integrated AI copilot (Cmd+K) that understands Kairos: queries status, recommends what is missing and executes actions by natural language. Every write goes through a human confirmation gate, and the copilot itself is governed by the platform (inventoried, with guardrails and audited).
Experience
Not an endless form: a copilot. The platform tells you what is missing, takes you to fix it and shows you how everything connects.
The whole network of use cases, systems, risks and assessments in one interactive graph. What needs attention is visible from afar.
Every entity shows its completeness: definition, risk, compliance, validation and approval. One glance, zero doubts.
Describe your use case and the AI suggests classification, risks and obligations. The path adapts to the EU AI Act risk level.
Visual workflows per risk level: who approved each step, on what date, and what is pending. Audit-ready.
Ask it in natural language (Cmd+K) to query, recommend or execute. Every change goes through your confirmation, and the copilot itself is governed by the platform.
Every module is functional, interactive and connected to the rest of the platform.
10 real-world scenarios with professional profiles from the public sector and large organisations. From onboarding to AESIA inspection.
Complete requirement mapping, impact assessments, EU AI Act conformity assessment and Art. 73 notifications with pre-configured authority directory.
EU Regulation
2024
CoreEU Regulation
2016
CoreRoyal Decree
2022
EU Directive
2022
Standard
2023
CoreStandard
2022
Framework
2023
EU Regulation
2022
CoreOrganic Law
2018
EU Directive
2022
Spanish Organic Law
2026
CoreAutomatic draft with legal deadlines and authority directory: AESIA, AEPD, CNMC, CCN-CERT, INCIBE and the European AI Office.
The best-known AI governance platforms are SaaS, cloud-only and with entry costs exceeding 50,000 EUR/year. Kairos offers a real alternative.
Kairos
Others
Your data never leaves your infrastructure. No third-party dependencies for storage.
Included
Cloud only (SaaS)
OpenAI-compatible proxy with PII detection, rate limiting, budgets and automatic fallback.
Included
Not included
Accessible licence for public administrations and mid-sized companies, with no per-user cost.
Included
From 50,000 EUR/year
Automated tests for bias, hallucinations, PII and prompt injection using AI as a judge.
Included
Not available
Directory of Spanish and European authorities, automatic drafts and deadline tracking.
Included
Manual setup
Six types of executable policy running every 5 minutes. Evaluates thresholds, drift, conformity and approvals.
Included
Partial
Bill of Materials with 9 component types and supplier risk assessment across 5 dimensions with sovereignty alerts.
Included
Partial
Kairos is a European company. Its competitors (Credo AI, Holistic AI, IBM) are US companies subject to the CLOUD Act and FISA.
Included
US company (CLOUD Act)
A data centre in Europe is not sovereignty if the company operating it is American. Kairos is a European company, with European jurisdiction, with no legal backdoors.
And it affects every public administration and large enterprise
Requires any US company to hand over data stored anywhere in the world if requested by a US court or agency — even if the data is on a server in Frankfurt or Madrid.
Allows the NSA to access data of non-US citizens without a warrant. Applies to Microsoft, Google, Amazon, Oracle and any cloud provider subject to US jurisdiction.
The Court of Justice of the EU invalidated the Privacy Shield. It ruled that data transfers to the US do not offer guarantees equivalent to the GDPR. The issue remains unresolved.
AWS Frankfurt, Azure Madrid or Google Belgium are still US companies. They are legally required to comply with the CLOUD Act, regardless of where their servers are physically located.
European company. European jurisdiction. No exceptions.
Kairos is a company incorporated in the European Union, subject exclusively to European law. No foreign government can demand that we hand over your data.
Deployed in your own data centre or on European infrastructure. No dependence on US hyperscalers. Your data never leaves EU jurisdiction.
Designed from day one for the EU AI Act, GDPR, ENS and NIS2. Not a later adaptation of an American product for the European market.
“Digital sovereignty is not a luxury, it is a strategic necessity. Europe cannot govern its artificial intelligence with tools that are subject to a foreign country's jurisdiction.”
— Kairos founding principle
On-premise, multi-tenant and secure. Compatible with ENS, GDPR and public procurement regulations.
Deployed in your data centre. No external cloud dependencies. Local PostgreSQL. Meets ENS data sovereignty requirements.
5 roles (Admin, Governance Manager, Model Owner, Auditor, Viewer) with JWT and cross-org superadmin. RLS on all tables.
Immutable audit trail protected by PostgreSQL triggers. Real-time PII detection. Alerts and automated cron.
Request a personalised demo and discover how Kairos can prepare your organisation for the EU AI Act in weeks, not months.
About us
Kairos is a project by David Luquin. Learn more about the author at cv.luquin.com.