How our AI really works
No magic, no 'proprietary AI'. Here you'll find everything Nexus does behind the scenes: models used, where data lives, how we respect GDPR and the EU AI Act.
Which AI models we use
Nexus AI orchestrates three families of models, each chosen for a specific purpose:
- LLM (understanding and generation): GPT-4o, GPT-4.1, Claude Sonnet (Anthropic), Gemini 2.5 (Google). We select based on use case, language and cost.
- Voice (Speech-to-Text): OpenAI Whisper, Deepgram. Real-time call transcription.
- Voice (Text-to-Speech): ElevenLabs, OpenAI Voice. Natural voice in 4 native languages.
All models are accessed via enterprise APIs of the respective providers, with agreements forbidding the use of your data to train public models.
Where your customer data lives
- Primary storage: Microsoft Azure, Italy North (Milan) and West Europe (Amsterdam) regions. Data never leaves the EU.
- Conversations: retained for 90 days by default. Configurable (from 30 to 365 days) based on your needs.
- Voice transcripts: retained for 30 days, then automatically deleted.
- Training data: only documents YOU upload to the Knowledge Base. Never other customers' data, never scraped public data.
What we do (and don't do) with your data
- We use data only to deliver the service to you.
- We encrypt at rest (AES-256) and in transit (TLS 1.3).
- Data access restricted to authorized Bigei SRL personnel, with audit logs.
- We don't sell your data. Ever.
- We don't train our (or others') public AI models on your data.
- We don't share conversations between different customers.
Compliance
- GDPR: compliant. Internal DPO appointed. DPA (Data Processing Agreement) available.
- EU AI Act: Nexus AI falls in the 'limited risk' category. We provide in-conversation transparency (the user knows they're talking to an AI), model audits, decision logs.
- CCPA (California): for customers with US users. Deletion and access rights.
- 99.9% SLA: guaranteed on Pro and Enterprise plans.
In-conversation transparency
When our customers' customers talk to Nexus AI, this happens:
- The AI always introduces itself as such ('I'm the AI assistant of [company name]'). Never deceives.
- The user can always ask 'I want to talk to a person' and get immediate transfer.
- For voice calls, at the start we say the conversation may be transcribed (explicit consent).
- On WhatsApp, the first message declares the assistant's AI nature.
Your rights as a Nexus customer
- Export: at any time you can download all your data (conversations, CRM, KB) in JSON/CSV format from the dashboard.
- Deletion: 1 click from the dashboard. Complete deletion within 30 days of request.
- Audit log: always see who (on your team or ours) accessed what.
- Custom DPA: available on request for Enterprise plans.
For requests on privacy, DPA, audit, exercising GDPR rights:
privacy@usenexus.im