Swiss FADP AI Governance Gateway

AI governance for Swiss data protection

The Swiss Federal Act on Data Protection (FADP/nDSG) and FINMA regulations require organizations to protect personal data and maintain oversight of automated decision-making. SAIG provides runtime controls supporting these requirements for AI traffic.

Swiss-Only sovereignty mode

SAIG’s Swiss-Only mode ensures AI requests only reach providers with verified Swiss data residency. Cross-border transfer is blocked unless the target jurisdiction meets Swiss adequacy requirements.

Capabilities

  • Special category protection — enhanced handling for sensitive personal data categories
  • Cross-border transfer controls — enforce data residency before provider egress
  • Automated decision notification support — audit evidence supporting Art. 22 requirements
  • Tamper-evident audit trail — SHA-256 hash chain with Ed25519 signatures for FINMA oversight
  • Emergency kill switch — instant cessation of AI operations for incident response

SAIG provides runtime controls, policy enforcement, audit evidence, and compliance-supporting workflows. It does not constitute legal advice, certification, or a guarantee of regulatory compliance.

Frequently Asked Questions

Can SAIG restrict AI traffic to Swiss providers only?

Yes. Swiss-Only sovereignty mode ensures requests only reach providers with verified Swiss data residency.

Does SAIG support FINMA requirements?

SAIG provides tamper-evident audit trails, governance receipts, and an emergency kill switch that support FINMA oversight workflows. It does not guarantee FINMA compliance.

How does SAIG handle special category data?

SAIG provides enhanced detection and policy handling for sensitive personal data categories as defined by the FADP.

Learn more