Secure AI integration for companies handling sensitive data

AI integration that demonstrably stays under control.

KIKS Systems integrates AI into business processes for larger organisations, with clearly defined permissions and complete logging. Systems are designed so that data does not leave the EU. Implementations are built in line with GDPR principles; the specific compliance requirements and assured data location are assessed for each project and documented contractually.

Member of the Software Internet Cluster Carinthia

Controlled AI process Logging active
  1. RequestA process step is initiated
  2. Permission checkThe AI can only perform explicitly enabled actions
  3. PreparationEmail as a draft, document for review — never immediately final
  4. Audit logEvery step and its rationale are recorded
  5. Human approvalNothing takes effect until a person approves it
System boundary No action without approval. No step without a record.

The principle

What sets KIKS systems apart from conventional AI solutions

01

Permissions, not blind trust

The AI is never given open-ended access. Every action it may perform is enabled individually in advance. Emails are created as drafts only, and documents are saved only after human review. Everything else is technically unavailable — not merely prohibited by policy.

02

Every step is logged

The system records which data was read, what action was taken and on what basis. You can show at any time what the AI did and why — to management, data protection officers or auditors.

03

EU data location by design

Systems are designed so that data does not leave the EU: either on-premise on your own infrastructure or in an EU cloud using European providers and models such as Mistral. Data flows, participating services and the assured data location are documented and agreed for each project.

Already using AI?

Maintain, improve and take over existing AI systems

Many companies have introduced AI but no longer have anyone keeping the system reliable and current. I take over live systems — including systems built by other providers — fix issues, improve them and keep them up to date.

Discuss an existing system

GDPR & EU AI Act

Built for organisations with accountability obligations

Business AI systems operate within a legal framework: the GDPR requires accountability for the processing of personal data, while the EU AI Act introduces graduated transparency and documentation duties. The technical foundations for meeting those duties are part of the architecture. Whether a specific solution meets the applicable legal requirements is assessed for each project; technical and contractual assurances are documented in writing. Transparency and labelling under Article 50 of the EU AI Act, applicable from 2 August 2026, are considered in the system architecture: AI interactions and AI-generated content are identified as such.

Data minimisation by design

The system receives access only to the data the specific process requires. Access is defined and documented before implementation, not restricted as an afterthought.

Processing documentation

Logging provides a basis for your records of processing activities and internal audits. You can trace which data the system used and for what purpose.

Clear processor arrangements

Data flows, storage locations and participating providers are set out in writing before the project starts. This provides a sound basis for data processing agreements.

AI Act assessment case by case

Before implementation, the use case is assessed to identify its risk category and resulting obligations. High-risk applications are undertaken only after a separate assessment.

Fit

Who KIKS is for — and who it is not for

A good fit

  • Organisations with roughly 30 or more employees that handle sensitive customer, employee, health, financial or contractual data
  • Companies that want to use AI without giving up control or compliance
  • Organisations with IT ownership, a data protection officer or management that needs to understand what an in-house AI system does
  • Companies with specific requirements for data location and traceability

Deliberately not a fit

  • Companies looking for an uncontrolled “AI does everything automatically” solution
  • Immediate automated customer communication without review
  • AI making legal, medical or payment decisions without human oversight
  • Projects without clear ownership and approval processes

Who is behind KIKS

One accountable contact, from analysis through operations.

KIKS Systems is the business of Karl Constantin Schulmeister in Klagenfurt, Austria. From the first conversation through ongoing operations, you work with the same person who designed and built your system and knows every component — without rotating project teams or knowledge lost at handovers.

About me
Karl Constantin Schulmeister, owner of KIKS Systems

Karl Constantin Schulmeister
Owner, KIKS Systems · Klagenfurt

Next step

Start with a conversation about your process

Describe the workflow you want AI to support and the data involved. I will give you a candid assessment of whether and how it can be implemented in a controlled way — including when the right answer is “do not automate”. For a structured, paid starting point, choose the Initial Analysis.

Request an introductory call