How our AI really works

No magic, no 'proprietary AI'. Here you'll find everything Nexus does behind the scenes: models used, where data lives, how we respect GDPR and the EU AI Act.

Which AI models we use

Nexus AI orchestrates three families of models, each chosen for a specific purpose:

  • LLM (understanding and generation): GPT-4o, GPT-4.1, Claude Sonnet (Anthropic), Gemini 2.5 (Google). We select based on use case, language and cost.
  • Voice (Speech-to-Text): OpenAI Whisper, Deepgram. Real-time call transcription.
  • Voice (Text-to-Speech): ElevenLabs, OpenAI Voice. Natural voice in 4 native languages.

All models are accessed via enterprise APIs of the respective providers, with agreements forbidding the use of your data to train public models.

Where your customer data lives

  • Primary storage: Microsoft Azure, Italy North (Milan) and West Europe (Amsterdam) regions. Data never leaves the EU.
  • Conversations: retained for 90 days by default. Configurable (from 30 to 365 days) based on your needs.
  • Voice transcripts: retained for 30 days, then automatically deleted.
  • Training data: only documents YOU upload to the Knowledge Base. Never other customers' data, never scraped public data.

What we do (and don't do) with your data

  • We use data only to deliver the service to you.
  • We encrypt at rest (AES-256) and in transit (TLS 1.3).
  • Data access restricted to authorized Bigei SRL personnel, with audit logs.
  • We don't sell your data. Ever.
  • We don't train our (or others') public AI models on your data.
  • We don't share conversations between different customers.

Compliance

  • GDPR: compliant. Internal DPO appointed. DPA (Data Processing Agreement) available.
  • EU AI Act: Nexus AI falls in the 'limited risk' category. We provide in-conversation transparency (the user knows they're talking to an AI), model audits, decision logs.
  • CCPA (California): for customers with US users. Deletion and access rights.
  • 99.9% SLA: guaranteed on Pro and Enterprise plans.

In-conversation transparency

When our customers' customers talk to Nexus AI, this happens:

  • The AI always introduces itself as such ('I'm the AI assistant of [company name]'). Never deceives.
  • The user can always ask 'I want to talk to a person' and get immediate transfer.
  • For voice calls, at the start we say the conversation may be transcribed (explicit consent).
  • On WhatsApp, the first message declares the assistant's AI nature.

Your rights as a Nexus customer

  • Export: at any time you can download all your data (conversations, CRM, KB) in JSON/CSV format from the dashboard.
  • Deletion: 1 click from the dashboard. Complete deletion within 30 days of request.
  • Audit log: always see who (on your team or ours) accessed what.
  • Custom DPA: available on request for Enterprise plans.

For requests on privacy, DPA, audit, exercising GDPR rights:

privacy@usenexus.im
Call AI hotelWhatsApp