Security · Privacy · AI Governance

Trust, traceability and governance

Trust Center

How Arteclaw builds legal AI infrastructure: security, privacy, AI governance, subprocessors and regulatory roadmap in one place.

Security

Multi-layer architecture, MFA, RBAC, SIEM, incident response. Path to SOC 2 and ISO 27001 alignment.

View Security Framework

Privacy

Compliance with Ley 25.326 (AR), GDPR and CCPA. Configurable data residency. Built-in anonymization via Maskedata.

View Compliance Framework

AI Governance

Arteclaw framework: A0–A3 risk classification per system, public AI System Cards, human oversight, auditable logs.

See per-product classification

Arteclaw AI Governance Framework

Every ecosystem product has a risk classification and a public AI System Card. We classify by impact and autonomy, not by hype.

A0
Low risk

General assistance with no direct legal impact.

A1
Limited risk

Interactive or generative AI requiring transparency.

A2
Sensitive professional risk

May affect legal strategy, deadlines, contracts or sensitive data. Human review required.

A3
High regulatory risk

Employment, rights, automated decisions. No Arteclaw product operates in A3 today without mandatory human oversight.

Subprocessors

External providers that process data to deliver the service. Any change is announced in advance to customers under contract.

Provider Purpose Region
OpenAI LLM (selected AI products) US
Anthropic LLM (selected AI products) US
Supabase Database + Auth + Storage EU / US (configurable)
Netlify Hosting + Edge Functions Global CDN
Azure Selected hosting + .NET services East US / Brazil South
MercadoPago Payment processing (via PayWiz) AR / LATAM

Updated: 2026-05-25. LLM models are not trained on customer data.

Compliance Roadmap

How we prepare for the regulatory frameworks relevant in the jurisdictions where we operate.

EU AI Act

Monitoring — A2/A3 readiness by 2026-08

EU
CA AB 2013 (Training Data Transparency)

Applies to GenAI vendors from 2026-01

California
AAIP — Responsible AI program

Aligned with AAIP guidelines (AR)

Argentina
CNV RG 1069/2025

Not applicable to current Arteclaw portfolio (RWA tokenization out of scope)

Argentina
PL 2338/2023

Tracking — Brazil horizontal AI law

Brazil

Responsible AI

  • We do not use AI for prohibited practices (harmful manipulation, social scoring, sensitive biometric inference).
  • Mandatory human review on A2 outputs (Draftor, LegalWiz, CLAI, Maskedata).
  • Verifiable citations in legal research outputs.
  • Confidence scores in PII detection for informed review.
  • Auditable log per A2+ system (exportable audit trail).

Security contact

Vulnerability reports, regulatory inquiries, DPO requests.

Contact the Trust team