CSA STAR Registry
Security, Trust, Assurance, and Risk Registry
Listings for Ansvar AI
Ansvar Systems (Sweden) operates Ansvar Gateway (gateway.ansvar.eu) — an MCP gateway that gives AI agents cited access to European and US law. Legal, compliance, and security teams connect the AI assistant they already use (Claude, Microsoft Copilot, ChatGPT) via OAuth 2.1 and query 46 live jurisdictions — 330,000+ national laws plus EU regulations and technical standards, with paragraph-level citations to the official publisher on every answer. Built-in workflows produce audit-ready output for threat modeling (STRIDE/LINDDUN, TARA), DPIA, and NIS2/DORA/CRA gap analysis.
Security posture: accuracy over availability, when a source is unavailable, the gateway returns an explicit error rather than an uncited answer from model memory, and licensing-withheld content is flagged, never silently dropped. All infrastructure is EU-hosted (Kubernetes on Hetzner, Finland). The central corpus fleet stores no customer data; the customer document plane is tenant-scoped with deletion support. Data is encrypted in transit (TLS 1.2+) and at rest (verified). Forensic-grade audit logging throughout; every served corpus passes a source-licensing audit before go-live.
ISO 27001:2022 — ISMS implemented; certification audit targeted Q3 2026. SOC 2: planned. Plans range from a free tier to team and company plans with document upload and a per-tenant audit ledger.
Every claim in it is backed by what we recorded today, the encryption "(verified)" is GAP-001's closure
Ansvar AI
Ansvar Gateway is a hosted MCP (Model Context Protocol) gateway that gives AI agents cited access to laws, regulations, and standards. Cu...
Listed Since: 2026-07-23
