Start free trial

Trust is not a feature.
It is the foundation.

VOKT connects your entire business. That only works if security, governance and control are built into every layer, not bolted on afterwards. This page is written for your security team. Send it to them.

THE SIX PRINCIPLES

How VOKT is built.

Secure

Data access is controlled at every step. Encrypted in transit and at rest. Isolated per customer, from a private space on shared infrastructure up to a fully sealed installation.

Governed

Policies and approvals are built in. Automations act within rules you define, and anything that needs a human decision is routed to the right human, every time.

Auditable

Every question, model call, automation and action is logged. You can always trace what happened, who approved it and why. Nothing is a black box.

Permission aware

VOKT respects the access rules of every connected system. An answer never contains something the person asking is not allowed to see. Permissions travel with the data.

Model agnostic

GPT, Claude, Gemini, Kimi, Mistral, open source and private models, all behind the same governance and the same permissions. You choose what runs, and where.

Deploy your way

Shared cloud, dedicated server, your own hardware or fully sealed. Your security posture decides where VOKT runs, not the other way around.

YOUR DATA

Where it lives, and who it belongs to.

Norwegian company, European by default

VOKT is built and operated by Frostbyte Holding AS in Norway, with GDPR built into how we work. A data processing agreement is part of every subscription. Vokt Cloud runs in the EU. Vokt Private runs in your choice of EU or US region, so your data lives under the jurisdiction you answer to.

No hyperscaler dependency

VOKT does not run your data through American hyperscaler platforms. For Premise deployments this is the entire point: your data never leaves your building.

Leave with everything

Your data is exportable at any time. If you leave, everything you connected and everything you built goes with you, and your data is deleted from our infrastructure.

Your data is never used to train models. Not ours. Not anyone's.

Not for training, not for resale, not for benchmarking, not for anything. Your data works for your business and nothing else. This holds on every tier, from Cloud to Sealed.

ACCESS CONTROL

The right people see the right things.
Nobody else.

Single sign on

VOKT plugs into your identity provider. One login, centrally managed, revoked the moment someone leaves.

Role based access

Roles and permissions are defined once and enforced everywhere: in search, in answers, in dashboards, in automations.

Source permissions respected

If a person cannot open a document in the source system, VOKT will not show them its contents either. Permission aware retrieval is enforced at query time, not by policy promise.

Human in the loop

Approvals are decisions, and decisions belong to people. Automations route them to the right person and record the outcome.

AUDIT

Everything traceable. Always.

When your auditor, your board or your own gut asks what happened, VOKT has the answer:

What happened

Every question, answer, automation and action, logged.

Who did it

Tied to an identity, on every entry.

What it was based on

Answers carry their sources. Decisions carry their context.

Who approved it

Approvals are recorded with the person and the moment.

DEPLOYMENT

Four postures. One system.

Every tier runs the full system with the same security model. The tiers differ in one thing only: where it runs.

Vokt Cloud

Shared European cloud

Your own secure company space on VOKT's European infrastructure. Isolated per customer, operated by VOKT.

Vokt Private

Dedicated server

A server that runs only for you, operated by VOKT on European infrastructure. No shared tenancy at all.

Vokt Premise

Your hardware

Installed on infrastructure you own. Your data never leaves your walls. Deliberately not hyperscaler based.

Vokt Sealed

Air gapped

No connection to the outside world. Local models only. Scoped with your security team, per case.

Fastest to startMaximum control
REGULATION

GDPR and the EU AI Act,
designed in rather than dealt with.

GDPR

Data processing agreement with every subscription. Data residency you choose. Deletion and export on request. Your data is processed for your business and nothing else, on every tier.

EU AI Act

The Act asks companies deploying AI for governance, human oversight, transparency and documentation. That is not a checklist VOKT bolted on, it is how VOKT works: every action governed, approvals routed to people, every answer sourced, every step logged. When your auditor asks how you control your AI, you show them the audit trail. And with European and local open source models available, you choose whose AI runs at all.

FOR PROCUREMENT

The paperwork, ready.

Security review coming? Good. We like companies that ask hard questions before they connect their business.

Data processing agreement, security documentation and subprocessor list available on request.
We answer security questionnaires, and for Premise and Sealed deployments we scope directly with your security team.

Send this to your security team.
Then let's talk.

Schedule a demo, bring your hardest questions.

VOKT  Your business, connected.
Your business, connected.