Pricing
Contact Sales
Security Without Compromise

Your DataStays Yours.Security by Design.

MiruIQ is built for sensitive, regulated, and high-trust document workflows. Security is not an add-on; it is enforced through explicit data lifecycles, controlled processing, and clear ownership boundaries. Run it self-hosted on your own infrastructure (on-premise deployment with local AI models) or on Swiss data hosting operated by MiruIQ.

Your documents never leave your infrastructure: MiruIQ runs fully on-premise or in Swiss data centres, with locally hosted AI models.

Swiss MadeHosted in SwitzerlandGDPR & revDSGEU AI ActOn-Prem Available
Deployment Models

Deployment Models & Security Guarantees

MiruIQ offers two deployment models. Both provide the same functional capabilities and pipeline logic, but differ in infrastructure ownership, trust boundaries, and operational responsibility.

As-a-Service (Managed)

MiruIQ operates and manages the platform on behalf of the customer.

MiruIQ
Managed Cloud
SOC2
E2E
Infrastructure
  • Swiss data hosting: purpose-built, professionally operated server infrastructure in Switzerland
  • Designed, built, and operated by MiruIQ
  • No reliance on third-party public cloud providers
Data Handling
  • Documents are processed ephemerally by default
  • No implicit document retention
  • Optional encrypted state for validations and backups
  • Extracted data and validation results delivered directly to customer-defined systems
Encryption & Key Control
  • Automatic per-pipeline encryption by default
  • Optional customer-managed keys inside MiruIQ
  • External KMS integration supported for stronger ownership guarantees
  • Output encryption uses customer-controlled keys
Best Suited For
  • Regulated environments requiring strong guarantees without infrastructure overhead
  • Teams that want control over data flows, not servers

Self-Hosted / On-Prem

MiruIQ is deployed entirely inside the customer's environment: on-premise deployment where no data leaves your infrastructure.

MiruIQ
Self-Hosted
Private
On-Prem
Infrastructure
  • Runs on customer-owned hardware or private Kubernetes clusters
  • Fully isolated network environment
  • Runs local AI models: no external model APIs or dependencies required
Data Handling
  • Documents never leave the customer's network
  • Identical lifecycle, deletion, and retention guarantees as managed model
  • Full control over storage, networking, and access policies
Encryption & Key Control
  • All encryption keys fully owned and managed by the customer
  • Integration with internal KMS or HSM systems
  • No MiruIQ-controlled key material
Best Suited For
  • Highly regulated or restricted environments
  • Maximum isolation and sovereignty requirements
Core Principles

Core Security Principles

Whether Swiss-hosted or as on-premise document processing on your own hardware, MiruIQ enforces the same architectural security principles. This architecture makes GDPR and revDSG compliance a property of the system rather than a promise.

Processing, Not Storage

MiruIQ processes documents to produce structured data and validation results. It does not act as a document repository unless explicitly configured.

Explicit Control

Every form of retention, encryption, output, or reprocessing is explicitly defined by the user. Nothing is retained implicitly.

Least Persistence

Documents and intermediate data exist only as long as required to complete the configured pipeline logic.

Data Lifecycle

Explicit Data Lifecycle

Documents are processed, not stored.

When a document enters a MiruIQ pipeline, it is treated as a processing unit, not as persistent content.

By default, documents flow through classifiers, extractors, and verification modules in memory and are removed immediately once their role in the pipeline is complete.

However, certain pipeline steps explicitly require temporary state. MiruIQ supports this in a controlled, transparent, and time-bound manner.

1

In Transit

Stateless Processing

The document is actively processed and exists only for the duration of execution.

2

Temporarily Retained

Stateful Processing

Extracted data or intermediate results are retained only when a module requires group-level context.

3

Delivered

Output Completion

Files, extracted data, or validation results are written to configured sinks.

4

Terminated

Automatic Deletion

Once processing or validation is complete, all intermediate state is immediately deleted.

Stateless by Default

Most pipelines remain fully stateless. Documents flow through the pipeline in memory and are discarded immediately after processing.

Stateless Characteristics
  • No document retention after processing
  • Each request is independent
  • No intermediate state persisted

Stateful Only When Needed

State is introduced only when a processor explicitly requires it, and always in a controlled, transparent, time-bound manner.

Examples Requiring State
  • Cross-document validation
  • API-based verification steps
  • Controlled reprocessing from backups
State is Always
  • Scoped to a single pipeline execution
  • Encrypted while retained
  • Automatically deleted once its purpose is fulfilled
Stateful Processing

State Only When Required

Example: Cross-Document Validation

Cross-document validation is a prime example of stateful processing in MiruIQ. Some workflows require verifying consistency across a set of related documents that together form a single business case.

How Grouping Works

  • Documents are assigned to a logical group (e.g., one loan application)
  • Group identifiers can be derived from metadata, filenames, or extracted document content
  • MiruIQ waits until the group is considered complete before executing cross-document validation

Validation Behavior

Once a document group is complete:

  • Extracted fields are compared across all documents in the group
  • Both exact and semantic matching can be applied (e.g., name variants or address abbreviations)
  • Validation results are produced and forwarded to the next pipeline step or output connector
  • All intermediate, temporarily retained data is immediately deleted
Retention Policy

Controlled State Retention

Minimal Retention

State is retained only when a processor explicitly requires it. Most pipelines remain fully stateless with no intermediate data persisted.

Immediate Deletion

As soon as state has served its purpose, such as completing cross-document validation, it is immediately and permanently deleted.

Always Encrypted

Any temporarily retained state is encrypted at rest using pipeline-specific keys. State is never stored in plaintext.

Encryption

Encryption & Secure Data Handling

Encryption for processing, state, and delivery, with clear ownership boundaries.

MiruIQ applies encryption at multiple stages of a pipeline depending on the lifecycle of the data.

A clear distinction is made between internal encryption (which protects data while it is processed) and output encryption (which protects data after it leaves the pipeline). These follow different ownership and control models.

Internal Encryption (Pipeline & Temporary State)

Internal encryption protects:

  • Temporary state used for cross-document validation
  • Intermediate extracted data retained while waiting for group completion
  • Backup snapshots used for controlled reprocessing

Internal keys are used only inside MiruIQ and are never shared with downstream systems.

Internal Key Management Options

Automatic Pipeline Encryption (Default)

One dedicated encryption key per pipeline. Created and rotated automatically. Never exposed to users.

Customer-Managed Keys (Inside MiruIQ)

Keys created and managed within MiruIQ. Controlled lifecycles and scoped usage.

External KMS Integration

Keys fully owned and managed by the customer. Revocation intentionally stops dependent pipeline steps.

Output Encryption (Data Leaving the Pipeline)

When data leaves MiruIQ (as files, extracted data, or validation results), encryption follows a different model.

  • Customer-controlled keys required
  • Internal keys never reused for outputs
  • Encryption applied before delivery

Output encryption supports both MiruIQ-managed secrets and external KMS integration. Choose the model that fits your security requirements.

Field-Level Encryption

Encrypt specific sensitive fields (SSN, account numbers, PII) while leaving other data readable. Ideal for partial data protection where some fields need selective access control.

  • Encrypt individual fields within structured output
  • Mix encrypted and plaintext data in same payload
  • Different keys for different field sensitivity levels
Full-Payload Encryption

Encrypt the entire output file or data payload. Ideal for high-security scenarios where all extracted data should be protected in transit and at rest.

  • Entire file or payload encrypted before delivery
  • Single decryption key for complete access
  • Maximum protection for sensitive document sets
Output Key Management Options

Customer-Provided Keys (Secrets in MiruIQ)

Store encryption keys securely within MiruIQ as managed secrets. Keys are used for output encryption but never exposed in logs or API responses.

External KMS Integration

Integrate with your existing Key Management Service (AWS KMS, Azure Key Vault, HashiCorp Vault). Keys remain fully under your control and are never stored in MiruIQ.

Backup & Recovery

Backup, Retention, Reprocessing

Optional pipeline backups

MiruIQ supports explicit, user-configured backup retention to enable controlled reprocessing.

Retention Strategies

Examples include:

  • Daily backups retained for 7 days
  • Backups every 4 hours retained for 1 week
  • Custom multi-tier retention policies

Retention applies only to backup snapshots, not live pipeline state.

Reprocessing Behavior

When reprocessing is triggered:

  • Documents are reintroduced into the pipeline from a selected backup point
  • Files are re-delivered to file sinks such as S3, FTP, or API
  • Extracted data and validation results are regenerated
  • Existing records in sink systems are overwritten where applicable

Reprocessing is deterministic and auditable.

Auditability

Designed for Auditability & Control

MiruIQ enables automation without sacrificing control, trust, or transparency.

GDPR / DSGVO (EU 2016/679)

Full compliance – privacy-by-design & privacy-by-default

EU ePrivacy Directive

Communications metadata & tracking protection (national implementations)

EU AI Act (alignment)

Transparency, auditability, logging, and human-in-the-loop support

EU Data Act (alignment)

Data portability, customer data ownership, and avoidance of vendor lock-in

EU Data Governance Act (principles)

Purpose limitation, data sovereignty, and controlled data sharing

NIS2 Directive (security alignment)

Risk management, access control, and incident-response readiness

FAQ

Security Questions

The three questions every regulated buyer asks about on-premise document processing.

Can intelligent document processing run fully on-premise?

Yes. MiruIQ deploys on your own hardware including the AI models: local LLMs on dedicated GPUs, no cloud dependency, air-gapped if required. On-premise operation is MiruIQ's founding constraint, not a feature added later.

Is there a document AI platform with Swiss hosting?

Yes. MiruIQ runs as a managed service on Swiss infrastructure: data residency in Switzerland, GDPR and revDSG compliance by architecture, suitable for banking- and insurance-grade workloads.

How do I process documents with AI without sending data to US clouds?

Choose a platform where the models run where your data lives. MiruIQ uses local AI models on Swiss or on-premise infrastructure. Documents, embeddings and extraction results never touch a US hyperscaler, which makes GDPR-compliant document AI a system property rather than a contractual promise.

Get Started

Security Without Compromise

Build document automation workflows with confidence. Your data stays protected at every step.