For regulated professionals

The AI productivity tool you’re actually allowed to use

Built for lawyers, therapists, healthcare consultants, NIS2-affected SMEs, and public-sector contractors — anyone whose compliance officer has banned the major cloud AI assistants with client data. Calmara ships all six of the controls below: self-hostable data, local LLM execution, memory with a revision history, a user-visible AI activity log, per-fact deletion, and export in open formats. Hand the checklist to your DPO.

The compliance checklist

Six controls your DPO will want to see. Calmara ships every one of them today — not as enterprise add-ons, but as defaults on every paid tier.

  • Self-host your knowledge & AI memory. Docker bundle for your own PostgreSQL. Client matter data never traverses Calmara’s infrastructure.
  • Local LLM execution. Zero cloud egress when paired with Ollama or llama.cpp. Your model never sees what you don’t want it to.
  • PII sanitization on every cloud LLM call. Structured identifiers — emails, phone numbers, card and ID numbers, IPs — redacted before prompts reach the provider.
  • GDPR-grade export and import. Schema-versioned JSON. Article 20 portability at every tier, not paywalled.
  • AI memory you can audit. Every remembered fact is a subject/predicate/object triple with temporal validity. DPO-readable. Pending-review queue.
  • Cookieless analytics. Plausible EU-hosted, aggregate-only. No Google Analytics. No Meta Pixel.