ISMS Copilot for Germany
EU storage plus optional EU AI mode, built for TISAX, KRITIS, BSI IT-Grundschutz and C5

What the ISMS Copilot Germany Copilot Can Do
100% EU mode in Settings → Data Protection: no Cloud Act or Schrems II exposure
Storage on AWS Frankfurt and Amsterdam, AI inference on Mistral (Sweden)
TISAX assessment readiness for automotive suppliers
KRITIS compliance for critical infrastructure operators
BSI IT-Grundschutz methodology and Bausteine guidance
BSI C5 cloud attestation preparation
NIS2UmsuCG and IT-Sicherheitsgesetz 2.0 alignment
Full German-language support with native terminology
About ISMS Copilot for Germany
ISMS Copilot Germany stores data in the EU (AWS Frankfurt and Amsterdam). Turn on EU AI mode in Settings for Mistral inference with no US data path. Plus AI-powered guidance for TISAX, KRITIS, BSI IT-Grundschutz, BSI C5, and EU frameworks like NIS 2 and DORA.
Cross-framework mappings
Working across ISMS Copilot Germany and another standard? ISMS Mappings is a free public directory of control maps (ISO 27001, SOC 2, NIST, GDPR, and more). A Better ISMS tool, separate from the chat assistant.
Browse free mappingsFrequently Asked Questions
Where is data stored for German users?
Storage is on AWS in Frankfurt and Amsterdam, EU regions only. With EU mode on, AI inference runs on Mistral on infrastructure in Sweden and no US-headquartered provider sits in the data path. Turn EU mode on in Settings → Data Protection.
Is it Cloud Act-safe?
When EU mode is on, both providers in the data path (Mistral and AWS in EU regions, with EU-resident contracting where applicable) are kept outside the reach of US extraterritorial demands. Turn it on in Settings → Data Protection. The flow is documented in our DPA.
Which German frameworks does it support?
ISMS Copilot Germany covers TISAX, KRITIS/IT-SiG 2.0, BSI IT-Grundschutz, BSI C5, and all EU frameworks (NIS2, DORA, GDPR) with German regulatory context.
Does it support German language?
Yes, ISMS Copilot provides full German-language support including native compliance terminology (Bausteine, Schutzbedarf, Maßnahmen) for natural interaction.
Can it help with ISO 27001 in Germany?
Absolutely. It supports both standard ISO 27001 certification and the BSI-specific 'ISO 27001 on the basis of IT-Grundschutz' path preferred by German federal agencies.
Ready to do compliance work faster?
Built for speed, accuracy, and audit-ready output.
