Launching pilots Q2 2026 · Financial services
IONOX · Built in Europe

The control layer for European enterprise AI.

IONOX sits between your people and every AI system they touch — giving compliance, risk and security teams the visibility, policy control and audit trail demanded by the AI Act, DORA, NIS2 and GDPR. Built in Europe. Governed by European law.

Jurisdiction EU only
Hosting Sovereign cloud
Focus Financial services
Stage Design partner cohort
01 · The problem

Your people already use AI. You just don't see it.

ChatGPT, Copilot, Gemini, Claude — adopted team by team, with no CISO, no DPO, and no compliance officer in the loop. By 2027, European regulators will ask you to prove exactly what your organization does with AI. Most companies cannot answer.

01

No visibility

You don't know which AI tools are used, by whom, or with what data. Shadow AI is already deployed at scale inside your organization.

02

No control

Customer records, PII and confidential documents are pasted into external models. There is no policy layer to intercept, mask or redirect them.

03

No audit trail

The EU AI Act, DORA and NIS2 require demonstrable oversight of AI usage. Screenshots and policy documents are not an audit trail.

04

No sovereignty

US-based AI governance tools fall under the CLOUD Act. Your data — and the governance layer protecting it — remains exposed to non-EU jurisdiction.

02 · The platform

Every prompt. Every user. Every time.

IONOX is a gateway that sits between your workforce and the AI systems they use. Every interaction is inspected, classified, and either routed, redacted, or recorded — according to the policies your compliance team defines.

Source
Your people
analysts legal ops
Control layer
IONOX
inspect · classify mask · redact route · log
Destination
AI systems
OpenAI · Mistral local · Ollama Azure · Claude
CAPABILITY 01

Real-time inspection & policy enforcement

Every prompt is classified at the moment of submission. Sensitive content is blocked, masked or rerouted according to rules your compliance team owns — not the AI vendor.

PII · PCI · MNPI · proprietary code
CAPABILITY 02

Model-agnostic routing & fallback

Route general questions to commercial models. Route sensitive prompts to a local Ollama deployment inside your perimeter. One policy layer, multiple destinations.

OpenAI · Mistral · Llama · on-prem
CAPABILITY 03

Regulator-ready audit trail

Full lineage for every interaction — user, prompt, classification, decision, model, response. Exportable in the structure DORA and the AI Act expect, not a CSV dump.

ISO 27001 · NEN 7510 · AI Act Art. 17
03 · Sovereignty

Governed by European law. Not American precedent.

US-based AI governance platforms — however well-engineered — operate under the CLOUD Act and FISA 702. The layer meant to protect your data is subject to a foreign legal order. IONOX is structurally different.

0
non-EU data processors in the critical path
  • EU legal entity, EU shareholders

    IONOX Group BV is Dutch-incorporated. Ownership, decision-making and data stay within EU jurisdiction.

  • Sovereign infrastructure

    Deployed on EU-native clouds (Hetzner, Scaleway, OVH). No US hyperscalers in the data path.

  • Local-first model routing

    For regulated data, prompts are rerouted to a local model deployment inside your own perimeter. Your most sensitive prompts never leave.

  • Compliance-native architecture

    Built by a team that started with GDPR and AI Act article mappings — not added them in v2.

04 · The business case

The cost of not knowing is no longer theoretical.

European enforcement has moved from warning to penalty. Regulators issued €1.2 billion in GDPR fines in 2024 alone. The AI Act raises the ceiling further. For a mid-market institution, a single material incident now exceeds a decade of governance investment.

AI Act — Tier 1
€35Mor 7%

Maximum fine for prohibited AI practices

Enforceable since February 2025. Whichever is higher — the fixed amount or 7% of worldwide annual turnover. For AI use cases that fall under Article 5 prohibitions, there is no compliance pathway. Only prevention.

Source · EU Regulation 2024/1689, Art. 99
AI Act — Tier 2
€15Mor 3%

Non-compliance with high-risk AI obligations

Applies from August 2026 to any deployer of high-risk AI — including financial scoring, recruitment and fraud detection systems. Covers failures in risk management, logging, human oversight and technical documentation.

Source · EU Regulation 2024/1689, Art. 99(4)
GDPR — 2024 enforcement
€1.2Bin fines

Total GDPR penalties issued across Europe in 2024

Enforcement expanded notably into financial services. A Spanish bank was fined €6.2M for inadequate security measures. Regulators now explicitly scrutinize AI-related data handling.

Source · DLA Piper GDPR Survey 2025
The real math
One serious incident costs more than a decade of IONOX. Most institutions realize this only after the fact.
Talk to us →
Aligned with every regulation your auditor will ask about
AI ActEU 2024/1689
DORAEU 2022/2554
NIS2EU 2022/2555
GDPREU 2016/679
ISO 27001roadmap
05 · Team

Founded by operators who lived the compliance problem.

IONOX is a founder-led European technology company. Built in the Netherlands, serving regulated institutions across the EU.

C
Chief Executive
C. Luisman

Background in governance, risk and compliance. Leads strategy, design partners, and commercial relationships. Spent years inside regulated environments watching AI arrive without oversight.

T
Chief Technology
T. Luisman

Leads platform architecture and engineering. Designs the gateway, policy engine, and AI agent layer. Focus on model-agnostic routing and a local-first deployment pattern.

D
Chief Financial
D. Luisman

Runs finance, contracts, and operational governance. Ensures every pilot, DPA and customer engagement is structured to hold up under regulator scrutiny and investor due diligence.

06 · Design partner program

We're running three design partner pilots. Not ten.

Selected mid-market financial institutions get a 60-day pilot of the IONOX platform, direct access to the founding team, and shape the product roadmap that will serve European finance for the next decade.

60-day engagement Founding-team access Founding-customer pricing

By submitting you agree to our Privacy Policy. We reply within one business day — usually faster.