Ithildin
Trust · 01 Sovereignty posture · Q3 2026

Built in Switzerland.
Hosted in Switzerland.
Cleared in Switzerland.

This page states our sovereignty posture in the terms procurement, security, and compliance reviewers use. Each item is a stated commitment, traceable to a control, a contract clause, or a Swiss law. Items marked as roadmap are dated.

i.
Swiss Data Sovereignty

Applied work on customer data runs locally, on the deployment's own infrastructure. In sovereign mode nothing leaves it — including general knowledge queries. In Max Brain mode, knowledge questions that contain no customer data go to external model vendors; subprocessors are named per deployment. Where customer operations require it, deployments are entirely on customer premises with no outbound connectivity.

  • FADP / revDSG-native
  • Subprocessors named per deployment
  • On-prem option · default
  • Customer DPA on file
ii.
Swiss Personnel

Founders, engineers, and Forward Deployed Engineers are Swiss citizens. Personensicherheitsprüfung (PSP) screening is conducted at the level the engagement requires — Grundsicherheitsprüfung for access to VERTRAULICH material, erweiterte Personensicherheitsprüfung for GEHEIM. No subcontracting outside Switzerland.

  • PSP at engagement level
  • Swiss-citizen FDEs
  • No offshore engineering
  • Background re-screen · annual
iii.
Swiss Hosting

Customer-managed on-prem, or Swiss-jurisdiction infrastructure. Never US hyperscalers for regulated workloads. Hosting partners are selected for Swiss legal domicile, Swiss operations, and Swiss-citizen access controls.

  • Infomaniak · Swiss-domiciled
  • Exoscale · Swiss-domiciled
  • Customer datacenter
  • Air-gapped on-prem
iv.
Classification Handling

Native support for Swiss classification levels under the Information Security Act (ISG). Markings propagate through the ontology — objects, properties, links, and actions all carry classification metadata. Purpose-based access controls enforce need-to-know.

  • INTERN · routine
  • VERTRAULICH · sensitive
  • GEHEIM · classified
  • Purpose-bound access
v.
Certifications Roadmap

The path to formal certification is dated. Where a target is open, Ithildin states it is open. We do not claim certifications we do not hold.

  • ISO/IEC 27001 · target Q4 2026
  • IEC 62443 (OT) · target Q2 2027
  • FINMA Circular 2018/3 · aligned
  • SOC 2 Type II · commercial
vi.
Air-gap Deployment

Ithildin is built to run inside fully disconnected Swiss sites — including hardened bunker facilities. Updates are signed, packaged, and delivered over a one-way data diode by Ithildin Fortress. The site is never reachable from outside; the outside is never reachable from inside.

Ithildin Fortress · Hub
Build, sign, and package release artifacts. Public-key distribution managed by customer.
Outside · CH-cloud
One-way
Data diode
Customer · Bunker
Air-gapped Ithildin instance. Verifies signatures, applies releases, never speaks back.
Inside · no egress
vii.
Audit & Provenance

Every read, every write, every model invocation is written to an append-only audit log. Audit trails support customer compliance reviews, Federal Audit Office inquiries, and internal investigations without engineering intervention.

  • Append-only audit log
  • Per-object lineage
  • Per-action attribution
  • Tamper-evident chain
viii.
Supply Chain

Software bill of materials published per release. No banned foreign components. No firmware from sanctioned jurisdictions. Customer-controlled signing keys for deployments.

  • SBOM · per release
  • Sanctions screening
  • Customer-controlled keys
  • No third-party telemetry

Note · Usage measurement and analytics. We use PostHog (PostHog Inc.; data processed on servers in Frankfurt, Germany, AWS eu-central-1) to understand how this website is used: page views, origin (referrer, UTM parameters), clicks and funnel steps. Without your consent, measurement runs without cookies and stores nothing on your device; unique visitors are counted server-side through a daily-rotating, irreversible hash of project id, daily salt, IP address, browser signature and hostname, the salt being deleted after processing and the IP address discarded. On the Contact and Pricing pages you may additionally accept a recognition cookie and session replay (form inputs are masked); you can withdraw that consent at any time via «Change privacy choices» in the footer. Your decision is stored in your browser (analytics_consent). No advertising trackers, no US analytics. Legal bases: Art. 45c Swiss Telecommunications Act (information and opt-out) and Art. 6 FADP / Art. 6(1)(a) GDPR for the consent-based features. Your rights: access, rectification, erasure — see the Contact page. Swiss hosting commitments apply to customer deployments; this website is a static brochure and holds no customer data.

Procurement-ready answers to the questions you have not yet asked.

A full DPA, threat model, and ISG classification mapping are available on request, as are briefings.