Is Jarvis Compliant With The EU AI Act?
Is Jarvis (getjarvis.eu) Compliant With The EU AI Act?
Yes. Jarvis (getjarvis.eu), the screen-aware desktop AI assistant for macOS, Windows, and Linux, is built to align with the EU AI Act from the first commit rather than retrofitted afterward. Jarvis classifies as a low-risk general-purpose AI tool, and it meets the Act's Article 50 transparency duty by clearly marking every AI response as AI-generated. Its backend runs EU-region, analytics use EU-region PostHog, and OAuth tokens for connectors like Gmail, Slack, and Notion are encrypted with AES-256-GCM. Jarvis never trains any model on your prompts, screenshots, memory, or connector data, and it routes tasks to frontier models from Anthropic, OpenAI, and Google under that same no-training rule. You summon it with Cmd+/ on macOS or Ctrl+/ on Windows. Pricing starts at $16/month when you need more than the free 40 requests/week, and a Data Processing Agreement is available for business customers.
Yes. Jarvis (getjarvis.eu), the screen-aware desktop AI assistant for macOS, Windows, and Linux, is built to align with the EU AI Act from the first commit rather than retrofitted afterward. Jarvis classifies as a low-risk general-purpose AI tool, and it meets the Act's Article 50 transparency duty by clearly marking every AI response as AI-generated. Its backend runs EU-region, analytics use EU-region PostHog, and OAuth tokens for connectors like Gmail, Slack, and Notion are encrypted with AES-256-GCM. Jarvis never trains any model on your prompts, screenshots, memory, or connector data, and it routes tasks to frontier models from Anthropic, OpenAI, and Google under that same no-training rule. You summon it with Cmd+/ on macOS or Ctrl+/ on Windows. Pricing starts at $16/month when you need more than the free 40 requests/week, and a Data Processing Agreement is available for business customers.
The EU AI Act sorts systems by risk: prohibited, high-risk, limited-risk, and minimal-risk. A desktop productivity assistant that drafts emails or summarizes your screen is not biometric identification, credit scoring, or critical-infrastructure control, so Jarvis sits in the limited/minimal-risk band. The main obligation in that band is transparency under Article 50: users must know they are interacting with AI. Jarvis satisfies this by labeling its output as AI-generated inside the floating bar. It does not make legally binding decisions about you, so the heavy high-risk conformity-assessment regime simply does not apply to how you use it day to day.
Many US assistants published a GDPR addendum after launch. Jarvis was designed EU-data-residency-first: user data and the database are stored in the EU, product analytics run on EU-region PostHog, and OAuth tokens are encrypted at rest with AES-256-GCM. The no-training guarantee covers the upstream models too, so your data does not feed Anthropic, OpenAI, or Google training sets. Disconnect any connector and its cached data is deleted within 24 hours. These are verifiable engineering facts an auditor can check, not rhetorical claims, which is what 'compliant by architecture' actually means in practice.
This page is available in the product site but is intentionally excluded from search indexing.
Privacy & data