Built for documents you are not allowed to share

Payroll documents carry names, salaries and bank details. Khaonix is designed so that it reads them, compares them and forgets them, and so that its models never needed them in the first place. This page states what is done with your documents, where, for how long, and what is never done.

No training on your documentsModels are trained on generated documents before they see a client's. They are not updated from client documents afterwards.
No access to your systemsNo interface, database connection or configuration in HR or payroll. Documents go in, results come out.
Deleted after useA run lives only as long as it is being reviewed. Export deletes it; unexported runs expire on their own.

What happens to a document

Nothing is stored beyond the run it belongs to, and nothing leaves the run except what you download.

1 Upload
Received over TLSAuthenticated with your key. Held in memory for the run.
2 Read
Fields extractedThe model reads the specified fields and records their positions.
3 Compare
Control appliedValues compared pair by pair. Result and evidence recorded for the run.
4 Review
Available for a limited timeThe review page is open while the run is in use; the window renews on each view.
5 Export
Downloaded once, then deletedReport, pages and spreadsheet in one download. The run is removed from the service. Unexported runs expire.

The exported file is yours and lives where you put it. Khaonix keeps no copy, no index and no derived data from it.

Where it runs

Two deployment options, same software, same results. The choice follows your security and compliance requirements.

As a service, hosted in the EU

Operated by Khaonix on infrastructure in the European Union. Suited to baselines, pilots and clients whose policies permit processing in the EU under a data processing agreement.

  • Dedicated instance per client, no shared storage
  • Access by API key; browser access by the same key
  • Data processing agreement under Swiss and EU data protection law

On your own servers

Delivered as a container with the models and controls qualified for you. Documents never leave your network; Khaonix has no access to the running system.

  • Runs without an internet connection
  • You operate it; updates are delivered as new container versions, each qualified before release
  • Suited to clients whose data may not leave the country or the organisation

What a security review will ask

Does Khaonix learn from our documents?

No. The models are trained on documents generated from a specification, in your layouts, before any client document is processed. Client documents are never added to a training set, and the models are not adjusted on them in operation. This is also why Khaonix can be qualified before use: the model that is tested is the model that runs.

Who can see our documents?

In the hosted service, the people you give the key to, through the review page, for as long as the run exists. Khaonix staff do not access client runs. On your own servers, only you.

What is logged?

That a run was created, when, by which key, and what it produced in counts: pairs, outcomes by status, coverage. Not the documents, not the values. The evidence for a run is in the run's own report and goes with the export.

Where is the data located?

In the hosted service, in the EU, on a dedicated instance. On your own servers, wherever you place the container. In both cases, data is held for the run only.

Is there a sub-processor?

In the hosted service, the EU infrastructure provider, named in the data processing agreement. No other party is involved in processing. There is no sub-processor in the on-premise deployment.

Can the results be relied on under our control framework?

Each run's report records the complete population, every outcome, the rule applied and the versions of everything involved. It is designed to serve as control evidence under frameworks such as SOC 1 and ISAE 3402; the qualification records for each control are available to clients under NDA.

What about the AI Act and Swiss data protection law?

Khaonix processes personal data on behalf of the client as a processor under the Swiss Data Protection Act and, where applicable, the GDPR. It makes no decisions about individuals: it reports whether two documents agree, and a person decides what follows. Documentation on scope, training data and qualification is kept for each model and control.

A completed security questionnaire and the data processing agreement are available on request. Specific controls not covered here can be discussed before a baseline.

Questions your security team wants answered first?

Send them before the baseline. Most are answered on this page; the rest in a short call with the person who built the system.