The Swiss DSG fines the responsible individual, not the company. Art. 47 BankG and Art. 321 CP add criminal statutes for banking and patient secrecy. One uncontrolled prompt is a potential disclosure.
AI security · Digital sovereignty for Switzerland
AI security.
Swiss roots, down to the datacenter.
Data loss prevention for your employees' LLM use and for AI agents. Visibility into shadow AI, transparency into how AI is used and what it costs. On our own servers in a Swiss datacenter, under Swiss law.
Why now
AI compliance is no longer optional. Our laws demand data protection.
Clinical AI, credit scoring, insurance pricing and public-sector AI become regulated high-risk systems, with binding logging, oversight and governance duties. Fines up to EUR 35 million or 7% of turnover.
Every prompt sent to a US-domiciled LLM provider can be accessed by US authorities. The Cloud Act applies wherever the data sits. Data on our servers in Switzerland is protected.
Products
Two control layers.
One Swiss tool.
Let your employees use ChatGPT, Claude, Gemini, Copilot, even DeepL. NativeAI Guard detects PII, client-identifying data, patient data and secrets in every prompt and upload, and masks, blocks and coaches before anything leaves your control. NativeAI Guard acts as a safety net in case an employee forgets a compliance rule or makes a mistake.
The AI you run (internal agents, RAG pipelines, chatbots, voice agents) ingests infected content and talks to external parties. NativeAI Guard inspects every prompt and every response in real time: prompt injection, jailbreaks and data exfiltration are stopped before the agent acts.
Seen in the field
Your best people leak the most data.
Not attackers, not insiders: motivated employees using every tool available to do their job well. Three scenarios from real conversations with Swiss security leaders. They are probably happening in your organization right now.
A marketing manager exports the full customer database to CSV and uploads it to ChatGPT to build campaign segments. It works beautifully. Every customer record just left the company, in one prompt.
Grammarly and Copilot send text to cloud APIs as your employees type. Legal pastes contracts into DeepL daily. Nobody "uploaded" anything, and traditional DLP never fires.
An internal agent calls OpenAI's API directly from backend code. Your browser extension, web proxy and CASB never see the traffic. Sensitive data flows out through a channel with zero controls.
Everyone talks about sovereign cybersecurity in Switzerland. We are making it a reality: a Swiss solution, built and hosted here, together with the Swiss institutions that want to protect themselves with a national solution.
Where your data actually ends up
Swiss, down to the datacenter.
Not a "Swiss region" of a US hyperscaler. NativeAI Guard runs on servers we own, in a Swiss datacenter, operated by a Swiss company under Swiss law. No layer of the stack is subject to the US Cloud Act.
Three data-handling modes: transient (nothing stored), anonymized storage, or a complete audit trail of all prompts, configured to what your legal team requires. Swiss SaaS on our hardware, or fully on-premises on yours.

Industries
Built for sectors where a leak is a crime.
Each industry page maps the full AI governance framework for that sector and shows exactly which obligations NativeAI Guard solves for the channels it protects.
FINMA 08/2024
DORAView framework →HealthArt. 321 CP
EU AI Act high-risk
DSG · NIS2View framework →InsuranceArt. 35 VAG
EU AI Act pricing
DORA · FINMAView framework →Public administrationEU AI Act Annex III
NIS2 · CER
DSGView framework →Critical infrastructureNIS2 · CER
EU AI Act safety
incident reportingView framework →Legal & Professional ServicesArt. 321 CP
Art. 13 BGFA
EU AI Act justiceView framework →
Start with a pilot phase that we run for you.
One month, observation only, no changes to workflows, we run it end to end. The result: a risk overview of data leaks, shadow AI, AI usage and model costs, the evidence for your management that the topic is urgent.