VaultLM — Terms / Voorwaarden
Version / Versie: June / Juni 2026
VaultLM is a trademark of El Niño B.V.
VaultLM is een handelsmerk van El Niño B.V.
Nederlandse versie
Document 1 — Algemene Voorwaarden VaultLM
Van toepassing op alle abonnementen en op het gebruik van het VaultLM-platform, inclusief de webapplicatie, accountvrije functionaliteiten, betaalde abonnementen, teamomgevingen, organisatieomgevingen en aanvullende diensten.
Artikel 1 — Wie wij zijn
1.1 VaultLM is een dienst van El Niño B.V., gevestigd te Enschede, kantoorhoudende aan Kuipersdijk 6c, 7512 CH Enschede en ingeschreven bij de Kamer van Koophandel onder nummer 08140115. Btw-nummer: NL820876045B01.
1.2 In deze voorwaarden wordt El Niño B.V. aangeduid als “VaultLM”, “wij” of “ons”. De natuurlijke persoon of rechtspersoon die gebruikmaakt van het platform wordt aangeduid als “Gebruiker”, “jij” of “klant”.
1.3 VaultLM is een handelsmerk van El Niño B.V.
Artikel 2 — Wat VaultLM is
2.1 VaultLM is een privacygerichte technische tussenlaag tussen vertrouwelijke documenten en AI-taalmodellen van derden.
2.2 Het platform is ontworpen om gevoelige informatie te herkennen en te maskeren vóórdat relevante passages naar een AI-model worden gestuurd, antwoorden te koppelen aan bronverwijzingen en veilig geanonimiseerd delen mogelijk te maken.
2.3 VaultLM is geen AI-model, geen zoekmachine, geen algemene cloudopslagdienst en geen juridisch, medisch, financieel, fiscaal of ander professioneel adviessysteem.
2.4 AI-antwoorden die via VaultLM worden gegenereerd, zijn afkomstig van externe taalmodellen of van modelroutes die door of namens de Gebruiker zijn gekozen. VaultLM faciliteert gecontroleerde toegang tot deze modellen, maar geeft geen zelfstandig professioneel oordeel over de inhoud van de antwoorden.
Artikel 3 — Disclaimer over AI-fouten en menselijke controle
3.1 AI-modellen maken fouten. De AI-antwoorden die via VaultLM worden gegenereerd kunnen afkomstig zijn van modellen van bijvoorbeeld OpenAI, Anthropic, Google, Mistral of andere providers, afhankelijk van de ingestelde modelroute. Deze modellen zijn krachtig, maar niet onfeilbaar.
3.2 AI-modellen kunnen onder meer:
- informatie weglaten of verkeerd interpreteren;
- verbanden leggen die er niet zijn;
- tekst genereren die plausibel klinkt maar feitelijk onjuist is;
- bronpassages samenvatten op een manier die nuance, context of juridisch gewicht verliest;
- bij vertaling, samenvatting of classificatie relevante details vereenvoudigen of weglaten.
3.3 Het genereren van plausibel klinkende maar onjuiste of niet-onderbouwde informatie wordt vaak “hallucinatie” genoemd. Gebruikers moeten er rekening mee houden dat ook antwoorden met bronverwijzingen onvolledig, onjuist of misleidend kunnen zijn.
3.4 VaultLM is verantwoordelijk voor de technische werking van het afschermings-, masker-, retrieval-, logboek- en routeringsmechanisme zoals beschreven in de productdocumentatie en de toepasselijke overeenkomst. VaultLM is niet verantwoordelijk voor de inhoud, juistheid, volledigheid, toepasbaarheid of bruikbaarheid van AI-antwoorden.
3.5 VaultLM vervangt geen juridisch, medisch, financieel, fiscaal, privacyrechtelijk of ander professioneel advies. Antwoorden die via het platform worden gegenereerd mogen niet worden gebruikt als enige basis voor beslissingen waarbij professionele expertise vereist is, tenzij een bevoegde professional die antwoorden heeft beoordeeld en gevalideerd.
3.6 Wanneer VaultLM bronverwijzingen toont, is de Gebruiker verantwoordelijk voor het controleren van de geciteerde passages voordat output extern wordt gebruikt, gedeeld, gepubliceerd of als basis voor verdere actie wordt genomen. Bronverwijzingen ondersteunen controleerbaarheid, maar garanderen niet dat het AI-antwoord volledig of juist is.
Artikel 4 — Toepasselijkheid
4.1 Deze algemene voorwaarden zijn van toepassing op alle overeenkomsten tussen VaultLM en de Gebruiker, inclusief het aanmaken van een account, het gebruik van een abonnement, accountvrije anonimiseringsfunctionaliteit, het delen van geanonimiseerde documenten en alle aanvullende diensten.
4.2 Door gebruik te maken van het platform aanvaardt de Gebruiker deze voorwaarden.
4.3 Afwijkingen zijn alleen geldig als zij schriftelijk zijn overeengekomen.
Artikel 5 — Toegestaan en verboden gebruik
5.1 Gebruikers mogen VaultLM inzetten voor het bewaren, afschermen, analyseren, samenvatten, bevragen en delen van documenten met behulp van AI, mits dit gebruik in overeenstemming is met toepasselijke wet- en regelgeving, rechten van derden respecteert en past binnen het doel waarvoor de dienst is aangeboden.
5.2 Het is niet toegestaan om:
- bestanden te uploaden waarover de Gebruiker geen verwerkingsrechten heeft;
- het platform te gebruiken voor misleidende, schadelijke, discriminerende, onrechtmatige of illegale inhoud;
- beveiligings-, masker-, afschermings- of toegangsmechanismen te omzeilen of zonder toestemming op kwetsbaarheden te testen;
- bijzondere categorieën persoonsgegevens of strafrechtelijke gegevens te verwerken zonder passende wettelijke grondslag en, waar nodig, een verwerkersovereenkomst;
- het platform door te verkopen, te white-labelen of aan derden aan te bieden zonder aparte schriftelijke overeenkomst;
- VaultLM te gebruiken voor high-risk beslissingen zonder menselijke controle en passende professionele beoordeling;
- het platform oneigenlijk, frauduleus, excessief, geautomatiseerd, abusief of in strijd met de technische of commerciële limieten van het gekozen prijsplan te gebruiken;
- handelingen te verrichten die de beschikbaarheid, integriteit, veiligheid, kostenstructuur of normale werking van VaultLM, modelproviders of andere gebruikers kunnen verstoren.
5.3 VaultLM is ontworpen als hulpmiddel, niet als vervanger van menselijk oordeel. Gebruikers blijven verantwoordelijk voor alle beslissingen, documenten, deelacties en externe communicatie die voortvloeien uit het gebruik van het platform.
Artikel 6 — Bestanden, gegevens en modeltraining
6.1 Bestanden die Gebruikers uploaden blijven eigendom van de Gebruiker of de rechthebbende. VaultLM verkrijgt geen eigendomsrecht op de inhoud van geüploade bestanden, vragen, antwoorden, afgeleide documenten of tokenkaarten.
6.2 VaultLM gebruikt de inhoud van geüploade bestanden, gestelde vragen, gegenereerde antwoorden, tokenkaarten en geanonimiseerde deelversies niet voor het trainen of verfijnen van AI-modellen.
6.3 Voor zover VaultLM gebruikmaakt van externe modelproviders, worden contractuele en technische maatregelen getroffen om te voorkomen dat klantdata voor modeltraining wordt gebruikt. De precieze waarborgen kunnen afhankelijk zijn van het gekozen abonnement, de modelroute, de deploymentvorm en de toepasselijke verwerkersafspraken.
6.4 VaultLM streeft naar een EU-first verwerkings- en opslagmodel. De precieze opslaglocatie, subverwerkers, modelroutes en eventuele doorgifte buiten de Europese Economische Ruimte worden beschreven in de privacy-, security- en verwerkersdocumentatie die bij het gekozen abonnement of zakelijke contract hoort.
6.5 Gebruikers kunnen bestanden verwijderen via het platform. Verwijdering van bestanden leidt niet altijd tot onmiddellijke verwijdering uit back-ups; back-ups worden verwijderd binnen de termijnen die zijn opgenomen in de privacy- en beveiligingsdocumentatie of de toepasselijke verwerkersovereenkomst.
Artikel 7 — Abonnementen, betaling, looptijd, seats, fair use en prijswijzigingen
7.1 VaultLM biedt abonnementen aan op maand- of jaarbasis en kan daarnaast accountvrije, trial-, team-, organisatie-, API- of maatwerkvormen aanbieden.
7.2 De actuele prijzen, limieten, inbegrepen volumes, seat-aantallen en voorwaarden staan vermeld op de website, in de checkout of in de betreffende offerte. Bij een jaarabonnement kan het volledige bedrag vooraf in rekening worden gebracht.
7.3 Maandabonnementen worden maandelijks aangegaan, automatisch verlengd en zijn maandelijks opzegbaar. Opzegging van een maandabonnement heeft werking tegen het einde van de lopende maand of, als een andere maandelijkse factuurperiode is overeengekomen, tegen het einde van die lopende factuurperiode. Er vindt geen terugbetaling plaats voor het resterende deel van een lopende maand, tenzij dwingend recht anders bepaalt.
7.4 Jaarabonnementen worden aangegaan voor de overeengekomen jaarperiode en worden automatisch verlengd, tenzij de Gebruiker het abonnement vóór de verlengingsdatum opzegt via de accountinstellingen of op de overeengekomen wijze. Als een jaarcontract eerder eindigt of door de Gebruiker eerder wordt beëindigd, vindt geen restitutie plaats voor de resterende looptijd, tenzij dwingend recht anders bepaalt of schriftelijk anders is overeengekomen.
7.5 Bij opzegging blijft toegang beschikbaar tot het einde van de betaalde periode, tenzij anders overeengekomen of tenzij het account wegens misbruik, fraude, oneigenlijk gebruik, wanbetaling of wettelijke noodzaak wordt opgeschort of beëindigd.
7.6 Voor team-, organisatie- en andere meergebruikersabonnementen geldt dat toegevoegde seats onderdeel worden van het abonnement van het hoofdaccount. Seats die tijdens een lopende maand of jaarperiode worden toegevoegd, blijven verschuldigd en lopen door totdat zij afzonderlijk zijn stopgezet en hun toepasselijke betaalde periode is afgelopen.
7.7 Een individuele seat kan, voor zover de accountinstellingen dit toelaten, eerder worden gedeactiveerd of beëindigd binnen de lopende gebruiksperiode. De financiële verplichting voor die seat loopt echter door tot het einde van de toepasselijke maand-, jaar- of factuurperiode, tenzij schriftelijk anders is overeengekomen.
7.8 Het hoofdaccount van een team-, organisatie- of meergebruikersabonnement kan pas definitief worden beëindigd nadat alle seats, subaccounts en gekoppelde betaalde gebruikers zijn stopgezet en de toepasselijke betaalde looptijden daarvan zijn verstreken. VaultLM kan praktische maatregelen nemen om toegang, export, verwijdering en overdracht van gegevens ordelijk af te wikkelen.
7.9 VaultLM hanteert geen standaard terugbetalingsbeleid voor reeds verstreken of lopende abonnementsperiodes. In uitzonderlijke omstandigheden kan een verzoek worden ingediend via hi@sharesafe.ai, maar VaultLM is niet verplicht tot restitutie tenzij dwingend recht anders bepaalt.
7.10 Indien de Gebruiker een consument is, dat wil zeggen een natuurlijke persoon die handelt voor doeleinden buiten diens bedrijfs- of beroepsactiviteit en geen btw-nummer gebruikt voor de aankoop, verleent VaultLM een herroepingsrecht van 30 dagen na aankoop. De consument kan de aankoop binnen die termijn ongedaan maken, mits er nog geen gebruik is gemaakt van de dienst. Onder gebruik valt onder meer het aanmaken of gebruiken van een workspace, het uploaden, verwerken, anonimiseren, bevragen of delen van documenten, het aanroepen van AI-functionaliteit of het gebruiken van inbegrepen tokens of capaciteit. Zodra de consument binnen de herroepingstermijn gebruikmaakt van de dienst, vervalt dit vrijwillig verlengde herroepingsrecht, voor zover wettelijk toegestaan.
7.11 Afhankelijk van het gekozen prijsplan hanteert VaultLM een fair use policy voor het gebruik van tokens, modelcapaciteit, documentverwerking, opslag, retrieval, masking, API-verzoeken en andere verbruiksafhankelijke onderdelen van de dienst. De vermelde prijs is gebaseerd op normaal, redelijk en passend gebruik binnen het doel van het gekozen abonnement.
7.12 Onder normaal gebruik wordt verstaan: gebruik dat in verhouding staat tot het gekozen prijsplan, het aantal gebruikers, de aard van de workflow, het overeengekomen volume en het beoogde professionele gebruik van VaultLM. Gebruik kan als niet-normaal, excessief of oneigenlijk worden beschouwd wanneer het structureel of incidenteel aanzienlijk afwijkt van vergelijkbare gebruikers of van de technische en commerciële uitgangspunten van het betreffende plan.
7.13 Als VaultLM constateert of redelijkerwijs vermoedt dat het gebruik buiten normaal gebruik valt, kan VaultLM contact opnemen met de Gebruiker om het gebruik te bespreken. VaultLM kan in dat geval redelijke maatregelen nemen, waaronder het voorstellen van een passend hoger plan, het beperken of temporiseren van gebruik, het in rekening brengen van aanvullende kosten, of het maken van aparte afspraken over volume, modelroutes, API-gebruik of dedicated capaciteit.
7.14 Wanneer de Gebruiker eigen API-sleutels, eigen modelroutes of eigen accounts bij AI-modelproviders gebruikt, is de token-fair-use policy van VaultLM niet van toepassing op het tokengebruik dat rechtstreeks via die eigen API-sleutels of modelroutes wordt afgerekend. In dat geval gelden de voorwaarden, gebruiksbeperkingen, kosten, databeleid en complianceverplichtingen van de betreffende aanbieder of modelprovider. De Gebruiker is zelf verantwoordelijk voor alle kosten, limieten en beleidsregels die voortvloeien uit het gebruik van eigen API-sleutels of externe provideraccounts.
7.15 VaultLM behoudt zich het recht voor prijzen, prijsplannen, limieten, inbegrepen volumes, seatprijzen en aanvullende kosten te wijzigen. Bij materiële prijswijzigingen voor bestaande betaalde abonnementen informeert VaultLM de Gebruiker vooraf, tenzij de wijziging uitsluitend voortvloeit uit belastingen, wettelijke verplichtingen, valutawijzigingen, providerkosten of andere externe kostencomponenten.
7.16 VaultLM mag jaarlijks een inflatiecorrectie toepassen op abonnementen, API-tarieven, seatprijzen, servicekosten en andere terugkerende vergoedingen. Deze correctie kan worden gebaseerd op een relevante consumentenprijsindex, zakelijke prijsindex of een andere redelijke inflatie- of kostenindex, tenzij schriftelijk anders is overeengekomen.
7.17 Bij oneigenlijk gebruik, frauduleus gebruik, vermoedelijke fraude, misbruik, omzeiling van limieten, schending van deze voorwaarden, schending van providerbeleid, betalingsfraude of gebruik dat schade kan veroorzaken aan VaultLM, modelproviders, infrastructuur of derden, mag VaultLM de toegang onmiddellijk opschorten of beëindigen. VaultLM behoudt zich het recht voor om geleden schade, gemaakte kosten, providerkosten, onderzoekskosten, juridische kosten en andere redelijke schade op de Gebruiker of klant te verhalen, voor zover wettelijk toegestaan.
Artikel 8 — Beschikbaarheid, onderhoud en wijzigingen
8.1 VaultLM streeft naar hoge beschikbaarheid, maar garandeert geen ononderbroken toegang. Gepland onderhoud wordt waar mogelijk vooraf aangekondigd.
8.2 VaultLM is niet aansprakelijk voor schade als gevolg van tijdelijke onbeschikbaarheid van het platform of van externe AI-modelproviders, tenzij dwingend recht anders bepaalt.
8.3 VaultLM kan deze voorwaarden aanpassen. Bij wezenlijke wijzigingen ontvangen Gebruikers ten minste 14 dagen vóór de ingangsdatum een melding per e-mail of via het platform.
8.4 Voortgezet gebruik na de ingangsdatum geldt als aanvaarding van de gewijzigde voorwaarden. Bij bezwaar kan de Gebruiker het abonnement opzeggen vóór de ingangsdatum.
Artikel 9 — Aansprakelijkheid
9.1 Voor zover wettelijk toegestaan is iedere aansprakelijkheid van VaultLM uitgesloten. Voor zover aansprakelijkheid niet volledig kan worden uitgesloten, is de totale aansprakelijkheid van VaultLM beperkt tot het bedrag dat de Gebruiker in de drie maanden voorafgaand aan het schadeveroorzakende event aan VaultLM heeft betaald. Voor de gratis dienst, waarvoor geen betaling plaatsvindt, is de totale aansprakelijkheid beperkt tot € 100.
9.2 VaultLM is in geen geval aansprakelijk voor directe schade, indirecte schade, gevolgschade, gederfde winst, gemiste besparingen, bedrijfsstagnatie, reputatieschade, verlies van goodwill, verlies of beschadiging van gegevens buiten de directe controle van VaultLM, kosten van herstel of reconstructie van data, of schade als gevolg van beslissingen genomen op basis van AI-output.
9.3 VaultLM is niet aansprakelijk voor fouten, onjuistheden, hallucinaties, omissies, vertragingen, providerstoringen, modelwijzigingen, databeleid van modelproviders, prijswijzigingen van modelproviders of andere omstandigheden die samenhangen met externe AI-modellen, API-aanbieders, hostingproviders, betaalproviders of andere derde partijen, tenzij dwingend recht anders bepaalt.
9.4 De Gebruiker erkent dat LLMs en andere AI-modellen fouten kunnen maken en dat output altijd door de Gebruiker moet worden gecontroleerd voordat deze wordt gebruikt voor beslissingen, externe communicatie, publicatie, professioneel advies of juridische, financiële, medische, privacygevoelige of andere risicovolle doeleinden.
9.5 De aansprakelijkheidsbeperking geldt niet voor zover uitsluiting of beperking van aansprakelijkheid op grond van dwingend recht niet is toegestaan.
Artikel 9a — Overdracht
9a.1 Wij mogen onze rechten en verplichtingen uit deze voorwaarden geheel of gedeeltelijk overdragen aan een groepsmaatschappij of rechtsopvolger die de exploitatie van de dienst voortzet, mits het beschermingsniveau voor uw gegevens daarbij niet vermindert. Wij kondigen een dergelijke overdracht aan op deze website.
Artikel 10 — Toepasselijk recht en geschillen
10.1 Op deze voorwaarden is Nederlands recht van toepassing, tenzij dwingend recht anders bepaalt.
10.2 Geschillen worden in eerste instantie zoveel mogelijk in overleg opgelost.
10.3 Lukt dat niet, dan is de bevoegde rechter in het arrondissement waar El Niño B.V. is gevestigd bij uitsluiting bevoegd, tenzij dwingend recht een andere rechter aanwijst.
Document 2 — Vault als Service: Aanvullende Voorwaarden
Van toepassing wanneer de vaultfunctionaliteit van VaultLM wordt gebruikt als zelfstandige opslagdienst, als onderdeel van de webapplicatie, als onderdeel van een team- of organisatieomgeving of als onderdeel van een B2B/API-integratie.
Artikel 1 — Wat de Vault is
1.1 De VaultLM-vault (“Vault”) is een versleutelde opslagomgeving voor documenten, afgeleide versies, tokenkaarten en bijbehorende metadata.
1.2 Bestanden worden opgeslagen in de Vault, geïndexeerd voor veilige zoek- en retrievalfuncties en alleen ontsloten voor geautoriseerde gebruikers of API-routes die aan de ingestelde rechten voldoen.
1.3 De Vault is geen algemene clouddienst. Zij is specifiek ontworpen voor documenten die worden gebruikt in combinatie met gecontroleerde AI-analyse, pre-inference masking, bronverwijzingen en veilig geanonimiseerd delen.
Artikel 2 — Versleuteling, toegang en organisatie
2.1 Bestanden in de Vault worden versleuteld opgeslagen en versleuteld verzonden. Sleutels worden beheerd door VaultLM of, indien zakelijk overeengekomen, volgens een specifieke key-management- of deploymentafspraak.
2.2 Sleutels worden niet gedeeld met AI-modelproviders.
2.3 Toegang tot de Vault wordt bepaald door de rechten die bij het aanmaken van de omgeving zijn ingesteld. Vaulteigenaren kunnen gebruikers toevoegen, rollen toewijzen en toegang intrekken.
2.4 VaultLM-medewerkers hebben geen toegang tot de inhoud van Vault-omgevingen, behalve voor technische ondersteuning op uitdrukkelijk verzoek van de vaulteigenaar of waar dit strikt noodzakelijk en contractueel toegestaan is voor beveiliging, incidentafhandeling of wettelijke verplichtingen.
2.5 Bestanden worden georganiseerd per Vault, workspace, dossier, klant, project of team. Elke Vault heeft een eigen rechtenstructuur, logboek en retrievalindex.
2.6 Bestanden uit verschillende Vaults worden niet gecombineerd tenzij de Gebruiker daarvoor expliciete toestemming heeft gegeven binnen de applicatie of via een zakelijke configuratie.
Artikel 3 — Architectonisch toegangsprincipe
3.1 Wanneer een Gebruiker een vraag stelt aan AI, haalt VaultLM uitsluitend relevante, minimale passages op uit Vault-omgevingen waartoe die Gebruiker toegang heeft.
3.2 Voordat context naar een AI-model wordt gestuurd, past VaultLM waar mogelijk masking, minimalisatie en routecontrole toe.
3.3 De Vault fungeert als autorisatielaag: als een Gebruiker een bestand niet mag openen, kan de AI via die Gebruiker ook geen content uit dat bestand ophalen.
3.4 Dit is een architectonisch principe, niet alleen een beleidsinstelling: een Gebruiker kan via AI-chat nooit meer ophalen dan diegene in de Vault mag openen.
Artikel 4 — Gebruik door eindgebruikers
4.1 Eindgebruikers kunnen de Vault gebruiken om vertrouwelijke documenten te bewaren, te organiseren, te bevragen met AI, te laten maskeren en veilig geanonimiseerd te delen.
4.2 De eindgebruiker blijft verantwoordelijk voor:
- het rechtmatig uploaden van documenten;
- het instellen en controleren van toegangsrechten;
- het controleren van AI-output en bronverwijzingen;
- het controleren van maskering voordat documenten extern worden gedeeld;
- het verwijderen van documenten wanneer bewaren niet langer nodig of toegestaan is.
4.3 De Vault voorkomt niet dat een Gebruiker met toegang tot een document de inhoud handmatig kopieert, exporteert, samenvat of buiten VaultLM deelt. Gebruikers moeten daarom alleen toegang krijgen voor zover dat passend is bij hun rol en doel.
Artikel 5 — Gebruik door organisaties, ontwikkelaars en API-integraties
5.1 Organisaties, ontwikkelaars en integratiepartners die de Vault inzetten als onderdeel van een eigen product, workflow, klantomgeving of API-integratie vallen onder aanvullende API-, security-, SLA- en verwerkersvoorwaarden die bij het afsluiten van een zakelijk contract worden overeengekomen.
5.2 Deze zakelijke voorwaarden kunnen onder meer regelen:
- de toegestane gebruiksscope en volumegrenzen;
- de verantwoordelijkheidsverdeling tussen VaultLM als verwerker en de organisatie als verwerkingsverantwoordelijke;
- subverwerkers en bijbehorende contractuele waarborgen;
- opslaglocatie, modelroutes en doorgiftebeperkingen;
- incidentrespons, datalekprocedures en auditmogelijkheden;
- verantwoordelijkheden richting eigen eindgebruikers van de organisatie of ontwikkelaar.
5.3 De organisatie of ontwikkelaar is verantwoordelijk voor de inrichting van de eigen eindgebruikerservaring, toestemmingen, privacy-informatie, interne autorisaties, logging, supportprocessen en naleving van toepasselijke wet- en regelgeving in het eigen product of de eigen workflow.
5.4 VaultLM levert technische documentatie, testomgevingen en ondersteuning bij integratie voor zover overeengekomen. Tenzij schriftelijk anders overeengekomen, is VaultLM niet verantwoordelijk voor de juridische beoordeling van het eindproduct waarin de Vault wordt ingebouwd.
Artikel 6 — Bewaartermijnen en verwijdering
6.1 Bestanden blijven bewaard zolang het account of de organisatie actief is, tenzij een kortere bewaartermijn is ingesteld.
6.2 Bij opzegging van een account worden bestanden binnen 30 dagen verwijderd uit productiesystemen en binnen 90 dagen uit back-ups, tenzij een verwerkersovereenkomst, wettelijke verplichting of zakelijke afspraak een andere termijn voorschrijft.
6.3 Op verzoek kan verwijdering worden versneld. Stuur daarvoor een verzoek naar hi@sharesafe.ai.
Artikel 7 — Beschikbaarheid en aansprakelijkheid bij dataverlies
7.1 VaultLM streeft naar minimale downtime voor de Vaultdienst. Voor organisaties met een SLA-vereiste zijn aparte afspraken over beschikbaarheidsniveaus, incidentrespons en escalatieprocedures mogelijk.
7.2 VaultLM treft redelijke technische en organisatorische maatregelen ter bescherming van opgeslagen bestanden, waaronder versleuteling, toegangscontrole en back-ups.
7.3 Desondanks kan VaultLM niet instaan voor volledig verliesvrije opslag onder alle omstandigheden. Gebruikers worden geadviseerd kritische bestanden ook buiten VaultLM te bewaren.
7.4 Bij aantoonbaar dataverlies als gevolg van een tekortkoming van VaultLM is de aansprakelijkheid beperkt tot het terugbetalen van abonnementskosten over de periode waarin het verlies heeft plaatsgevonden, tenzij dwingend recht anders bepaalt.
Document 3 — Anonimisering als Service: Aanvullende Voorwaarden
Van toepassing op de anonimiserings- en maskeerservice van VaultLM, zowel via de webapplicatie als via de API en zakelijke integraties.
Artikel 1 — Wat de Masking Service is
1.1 De anonimiseringsservice van VaultLM (“Masking Service”) herkent en maskeert gevoelige informatie in documenten vóórdat informatie wordt doorgestuurd naar een AI-model of wordt opgeslagen als gedeeld bestand.
1.2 De service vervangt herkende waarden door stabiele tijdelijke tokens, bijvoorbeeld [PERSOON_01], [IBAN_01], [EMAIL_01] of [COMPANY_01].
1.3 De koppeling tussen een token en de oorspronkelijke waarde wordt de “tokenkaart” genoemd.
Artikel 2 — Wat de service maskeert
2.1 De Masking Service is ontworpen om onder meer de volgende categorieën te herkennen en te maskeren:
- namen van natuurlijke personen;
- e-mailadressen, telefoonnummers en postale adressen;
- burgerservicenummers en vergelijkbare nationale identificatienummers;
- rekeningnummers, IBAN’s, creditcardnummers en andere financiële identifiers;
- IP-adressen, apparaatidentifiers en technische identifiers;
- contractpartijen en bedrijfsnamen waar die als directe identifier worden gebruikt;
- klantnummers, dossiernummers, referentienummers en vergelijkbare identifiers;
- andere waarden die op basis van context als persoonsgegevens, bedrijfsvertrouwelijke informatie of gevoelige informatie worden herkend.
2.2 De service werkt op basis van patroonherkenning, Named Entity Recognition, contextuele taalanalyse en aanvullende detectiemethoden. De exacte dekking hangt af van taal, documenttype, bestandskwaliteit, domein en complexiteit van de tekst.
Artikel 3 — Grenzen van de Masking Service
3.1 Automatische anonimisering is een hulpmiddel, geen juridisch sluitende garantie. De Masking Service kent inherente beperkingen.
3.2 Onvolledige herkenning. Niet alle gevoelige informatie wordt in elk document herkend. Atypische schrijfwijzen, versleutelde namen, indirecte identificatie via combinaties van gegevens of domeinspecifiek jargon kunnen door de service worden gemist.
3.3 Indirecte identificatie. Het maskeren van directe identifiers sluit niet uit dat een persoon, organisatie of dossier nog steeds identificeerbaar is op basis van een combinatie van niet-gemaskeerde gegevens, zoals functie, locatie, datum, context of zeldzame feiten. VaultLM maskeert directe identifiers; het volledig elimineren van indirect identificatierisico valt buiten de standaardscope van de service.
3.4 Documenttypes. De service presteert het best op tekstuele documenten. Gescande afbeeldingen zonder OCR, visueel verborgen tekst in PDF-lagen, handgeschreven tekst, complexe tabellen, grafieken of afbeeldingen kunnen beperkingen opleveren.
3.5 Geen AVG-compliance als eindproduct. Het gebruik van de Masking Service is geen vervanging voor een formele anonimiserings- of pseudonimiseringsbeoordeling in het kader van de AVG.
3.6 VaultLM doet geen uitspraken over de juridische status van door de Masking Service bewerkte bestanden in het kader van privacywetgeving. Of een door VaultLM gegenereerd bestand juridisch als volledig geanonimiseerd kan worden beschouwd, hangt af van de context en vereist een eigen beoordeling door de verwerkingsverantwoordelijke.
3.7 Gebruikers zijn zelf verantwoordelijk voor het controleren van de output van de Masking Service voordat zij geanonimiseerde bestanden extern delen, publiceren of gebruiken in juridisch, medisch, financieel of privacygevoelig verband.
Artikel 4 — Gebruik door eindgebruikers
4.1 Eindgebruikers kunnen de Masking Service gebruiken om documenten te laten maskeren vóór AI-verwerking, om geanonimiseerde of gemaskeerde versies te maken en om veilige deelversies aan te maken.
4.2 De eindgebruiker blijft verantwoordelijk voor:
- het rechtmatig uploaden en verwerken van documenten;
- het controleren of de juiste informatie is gemaskeerd;
- het beoordelen of indirecte identificatie nog mogelijk is;
- het controleren van de output vóór extern gebruik of delen;
- het beoordelen of professioneel of juridisch advies nodig is.
4.3 De Masking Service is bedoeld om risico’s te verkleinen en controleerbaarheid te vergroten. De service garandeert niet dat een document in juridische zin anoniem is.
Artikel 5 — Gebruik door organisaties, ontwikkelaars en API-integraties
5.1 Organisaties, ontwikkelaars en integratiepartners die de Masking Service via de API of als onderdeel van een eigen product, workflow of klantomgeving inzetten, zijn verantwoordelijk voor de juiste toepassing in hun eigen context.
5.2 Deze partijen zijn onder meer verantwoordelijk voor:
- het correct configureren van maskeerparameters voor hun documenttype, domein en risicoprofiel;
- het testen en valideren van output vóór gebruik in productie of externe communicatie;
- het informeren van eigen eindgebruikers over de grenzen van geautomatiseerde anonimisering;
- het bepalen of menselijke review verplicht is;
- het naleven van toepasselijke privacy-, sector- en beroepsregels in het eindproduct;
- het opnemen van passende disclaimers, privacy-informatie en contractuele afspraken richting eigen gebruikers of klanten.
5.3 VaultLM levert technische documentatie, testomgevingen en ondersteuning bij integratie voor zover overeengekomen.
5.4 Tenzij schriftelijk anders overeengekomen, ligt verantwoordelijkheid voor naleving van privacywetgeving in het eindproduct bij de organisatie, ontwikkelaar of integratiepartner die de API of Masking Service gebruikt.
Artikel 6 — Tokenkaart en rehydratie
6.1 De koppeling tussen gemaskeerde tokens en oorspronkelijke waarden wordt opgeslagen als een versleutelde tokenkaart in VaultLM.
6.2 De tokenkaart verlaat de beveiligde omgeving van VaultLM niet en wordt nooit meegestuurd naar AI-modelproviders of opgenomen in gedeelde bestanden.
6.3 Rehydratie — het terugplaatsen van originele waarden in een gemaskeerd document — is uitsluitend mogelijk voor gebruikers met de daarvoor benodigde rechten.
6.4 Bij het aanmaken van een veilig deelpakket wordt rehydratie voor de ontvanger standaard geblokkeerd.
Artikel 7 — Afgeleide objecten en veilig geanonimiseerd delen
7.1 Een bestand dat via de Masking Service is bewerkt, is een afgeleide versie van het origineel. Het originele bestand blijft ongewijzigd opgeslagen in de Vault.
7.2 Origineel en afgeleide versie hebben ieder een eigen logboek, rechtenstructuur en levenscyclus.
7.3 Het verwijderen van het originele bestand leidt niet automatisch tot verwijdering van de afgeleide versie, en andersom. Beide moeten afzonderlijk worden verwijderd als dat gewenst is, tenzij een specifieke retentie-instelling anders bepaalt.
7.4 VaultLM kan Gebruikers in staat stellen om een geanonimiseerde of gemaskeerde versie van een document, analyse, samenvatting of AI-output veilig te delen met derden.
7.5 Veilig geanonimiseerd delen kan instellingen omvatten zoals verloopdatum, toegangsrechten, downloadbeleid, watermerk, bronverwijzingen en logboekregistratie.
7.6 De Gebruiker blijft verantwoordelijk voor het controleren van de maskeeroutput en voor de beslissing om een deelpakket extern beschikbaar te maken.
Artikel 8 — Logboek en audit
8.1 Elke maskeeractie wordt gelogd: welk document, welk type tokens is aangemaakt, welke route is gebruikt, door welke gebruiker en op welk tijdstip.
8.2 Dit logboek is beschikbaar voor de vaulteigenaar en kan afhankelijk van het abonnement worden geëxporteerd voor interne audit of externe verantwoording.
8.3 Het logboek bevat geen originele waarden; het registreert uitsluitend het feit dat maskering heeft plaatsgevonden, het type token en metadata van de actie.
Artikel 9 — Aansprakelijkheid
9.1 VaultLM is aansprakelijk voor de correcte technische werking van de Masking Service conform deze voorwaarden en de productdocumentatie.
9.2 VaultLM is niet aansprakelijk voor:
- schade die voortvloeit uit het niet herkennen van gevoelige informatie die buiten de beschreven categorieën valt, atypisch is opgeschreven of indirect identificeerbaar blijft;
- juridische gevolgen van het gebruik van geanonimiseerde bestanden die door de Gebruiker als volledig geanonimiseerd zijn beschouwd zonder eigen beoordeling;
- schade als gevolg van het delen van bestanden zonder voorafgaande controle van de maskeeroutput;
- beslissingen, publicaties of externe communicatie op basis van AI-output zonder menselijke of professionele review.
English version
Document 1 — VaultLM Terms of Service
Applicable to all subscriptions and use of the VaultLM platform, including the web application, free anonymisation features, paid subscriptions, team environments, organisation environments and additional services.
Article 1 — Who we are
1.1 VaultLM is a service of El Niño B.V., established in Enschede, with offices at Kuipersdijk 6c, 7512 CH Enschede and registered with the Dutch Chamber of Commerce under number 08140115. VAT number: NL820876045B01.
1.2 In these Terms, El Niño B.V. is referred to as “VaultLM”, “we” or “us”. The natural person or legal entity using the platform is referred to as the “User”, “you” or “customer”.
1.3 VaultLM is a trademark of El Niño B.V.
Article 2 — What VaultLM is
2.1 VaultLM is a privacy-focused technical layer between confidential documents and third-party AI language models.
2.2 The platform is designed to detect and mask sensitive information before relevant passages are sent to an AI model, to link answers to source references and to enable secure anonymised sharing.
2.3 VaultLM is not an AI model, search engine, general cloud storage service, or legal, medical, financial, tax or other professional advisory system.
2.4 AI answers generated through VaultLM originate from external language models or model routes selected by or on behalf of the User. VaultLM facilitates controlled access to these models, but does not provide an independent professional judgement on the content of the answers.
Article 3 — Disclaimer on AI errors and human review
3.1 AI models make mistakes. AI answers generated through VaultLM may come from models provided by OpenAI, Anthropic, Google, Mistral or other providers, depending on the configured model route. These models are powerful, but not infallible.
3.2 AI models may, among other things:
- omit or misinterpret information;
- infer relationships that do not exist;
- generate text that sounds plausible but is factually incorrect;
- summarise source passages in a way that loses nuance, context or legal weight;
- simplify or omit relevant details during translation, summarisation or classification.
3.3 The generation of plausible-sounding but incorrect or unsupported information is often referred to as “hallucination”. Users must take into account that even answers with source references may be incomplete, incorrect or misleading.
3.4 VaultLM is responsible for the technical operation of the shielding, masking, retrieval, logging and routing mechanisms as described in the product documentation and the applicable agreement. VaultLM is not responsible for the content, accuracy, completeness, applicability or usefulness of AI answers.
3.5 VaultLM does not replace legal, medical, financial, tax, privacy or other professional advice. Answers generated through the platform must not be used as the sole basis for decisions requiring professional expertise unless a qualified professional has reviewed and validated those answers.
3.6 Where VaultLM shows source references, the User is responsible for reviewing the cited passages before output is used externally, shared, published or relied upon for further action. Source references support auditability, but do not guarantee that the AI answer is complete or correct.
Article 4 — Applicability
4.1 These Terms apply to all agreements between VaultLM and the User, including account creation, subscription use, free anonymisation features, sharing of anonymised documents and all additional services.
4.2 By using the platform, the User accepts these Terms.
4.3 Deviations are valid only if agreed in writing.
Article 5 — Permitted and prohibited use
5.1 Users may use VaultLM to store, shield, analyse, summarise, query and share documents using AI, provided that such use complies with applicable laws and regulations, respects third-party rights and is consistent with the purpose for which the service is offered.
5.2 Users may not:
- upload files for which the User has no processing rights;
- use the platform for misleading, harmful, discriminatory, unlawful or illegal content;
- circumvent security, masking, shielding or access mechanisms or test vulnerabilities without permission;
- process special categories of personal data or criminal data without an appropriate legal basis and, where required, a data processing agreement;
- resell, white-label or offer the platform to third parties without a separate written agreement;
- use VaultLM for high-risk decisions without human oversight and appropriate professional review;
- use the platform improperly, fraudulently, excessively, automatically, abusively or in breach of the technical or commercial limits of the selected price plan;
- perform acts that may disrupt the availability, integrity, security, cost structure or normal operation of VaultLM, model providers or other users.
5.3 VaultLM is designed as a tool, not as a replacement for human judgement. Users remain responsible for all decisions, documents, sharing actions and external communications arising from use of the platform.
Article 6 — Files, data and model training
6.1 Files uploaded by Users remain the property of the User or the rights holder. VaultLM does not acquire ownership of uploaded files, questions, answers, derivative documents or token maps.
6.2 VaultLM does not use uploaded files, questions, generated answers, token maps or anonymised sharing versions to train or fine-tune AI models.
6.3 Where VaultLM uses external model providers, contractual and technical measures are taken to prevent customer data from being used for model training. The exact safeguards may depend on the selected subscription, model route, deployment form and applicable data processing arrangements.
6.4 VaultLM aims to follow an EU-first processing and storage model. The exact storage location, subprocessors, model routes and any transfers outside the European Economic Area are described in the privacy, security and data processing documentation applicable to the selected subscription or business contract.
6.5 Users can delete files through the platform. File deletion does not always result in immediate deletion from backups; backups are deleted within the periods stated in the privacy and security documentation or applicable data processing agreement.
Article 7 — Subscriptions, payment, term, seats, fair use and price changes
7.1 VaultLM offers monthly or annual subscriptions and may also offer free anonymisation, trial, team, organisation, API or custom plans.
7.2 Current prices, limits, included volumes, seat numbers and conditions are listed on the website, in the checkout or in the relevant quote. For annual subscriptions, the full amount may be charged in advance.
7.3 Monthly subscriptions are entered into on a monthly basis, renew automatically and can be cancelled monthly. Cancellation of a monthly subscription takes effect at the end of the current month or, if another monthly billing period has been agreed, at the end of that current billing period. No refund is provided for the remaining part of a current month, unless mandatory law provides otherwise.
7.4 Annual subscriptions are entered into for the agreed annual period and renew automatically unless the User cancels the subscription before the renewal date through the account settings or in the agreed manner. If an annual contract ends early or is terminated early by the User, no refund is provided for the remaining term, unless mandatory law provides otherwise or otherwise agreed in writing.
7.5 Upon cancellation, access remains available until the end of the paid period, unless otherwise agreed or unless the account is suspended or terminated due to misuse, fraud, improper use, non-payment or legal necessity.
7.6 For team, organisation and other multi-user subscriptions, added seats become part of the main account subscription. Seats added during a current month or annual period remain payable and continue until they have been separately cancelled and their applicable paid period has ended.
7.7 An individual seat may, where the account settings allow this, be deactivated or ended earlier within the current usage period. The financial obligation for that seat continues until the end of the applicable monthly, annual or billing period, unless otherwise agreed in writing.
7.8 The main account of a team, organisation or other multi-user subscription can only be finally terminated after all seats, subaccounts and linked paid users have been cancelled and the applicable paid terms for those seats have expired. VaultLM may take practical measures to handle access, export, deletion and transfer of data in an orderly manner.
7.9 VaultLM does not apply a standard refund policy for elapsed or current subscription periods. In exceptional circumstances, a request may be submitted via hi@sharesafe.ai, but VaultLM is not obliged to provide a refund unless mandatory law provides otherwise.
7.10 If the User is a consumer, meaning a natural person acting for purposes outside their trade, business or profession and not using a VAT number for the purchase, VaultLM grants a 30-day right of withdrawal after purchase. The consumer may undo the purchase within that period, provided that the service has not yet been used. Use includes, among other things, creating or using a workspace, uploading, processing, anonymising, querying or sharing documents, calling AI functionality or using included tokens or capacity. Once the consumer uses the service within the withdrawal period, this voluntarily extended withdrawal right lapses, to the extent permitted by law.
7.11 Depending on the selected price plan, VaultLM applies a fair use policy to the use of tokens, model capacity, document processing, storage, retrieval, masking, API requests and other usage-based components of the service. The stated price is based on normal, reasonable and appropriate use within the purpose of the selected subscription.
7.12 Normal use means use that is proportionate to the selected price plan, the number of users, the nature of the workflow, the agreed volume and the intended professional use of VaultLM. Use may be considered non-normal, excessive or improper where it structurally or incidentally deviates materially from comparable users or from the technical and commercial assumptions of the relevant plan.
7.13 If VaultLM determines or reasonably suspects that usage falls outside normal use, VaultLM may contact the User to discuss that usage. VaultLM may then take reasonable measures, including proposing a more appropriate higher plan, limiting or throttling usage, charging additional fees, or agreeing separate terms for volume, model routes, API usage or dedicated capacity.
7.14 Where the User uses its own API keys, model routes or accounts with AI model providers, VaultLM’s token fair use policy does not apply to token usage charged directly through those own API keys or model routes. In that case, the terms, usage restrictions, costs, data policy and compliance obligations of the relevant provider or model provider apply. The User is solely responsible for all costs, limits and policies arising from the use of own API keys or external provider accounts.
7.15 VaultLM reserves the right to change prices, price plans, limits, included volumes, seat prices and additional fees. In case of material price changes for existing paid subscriptions, VaultLM will inform the User in advance, unless the change results solely from taxes, legal obligations, currency changes, provider costs or other external cost components.
7.16 VaultLM may apply an annual inflation adjustment to subscriptions, API rates, seat prices, service fees and other recurring fees. This adjustment may be based on a relevant consumer price index, business price index or other reasonable inflation or cost index, unless otherwise agreed in writing.
7.17 In case of improper use, fraudulent use, suspected fraud, abuse, circumvention of limits, breach of these Terms, breach of provider policies, payment fraud or use that may cause damage to VaultLM, model providers, infrastructure or third parties, VaultLM may immediately suspend or terminate access. VaultLM reserves the right to recover damages, incurred costs, provider costs, investigation costs, legal costs and other reasonable losses from the User or customer, to the extent permitted by law.
Article 8 — Availability, maintenance and changes
8.1 VaultLM aims for high availability, but does not guarantee uninterrupted access. Planned maintenance will be announced in advance where possible.
8.2 VaultLM is not liable for damage resulting from temporary unavailability of the platform or external AI model providers, unless mandatory law provides otherwise.
8.3 VaultLM may amend these Terms. In case of material changes, Users will receive notice by email or through the platform at least 14 days before the effective date.
8.4 Continued use after the effective date constitutes acceptance of the amended Terms. If the User objects, the User may cancel the subscription before the effective date.
Article 9 — Liability
9.1 To the extent permitted by law, all liability of VaultLM is excluded. To the extent liability cannot be fully excluded, VaultLM’s total liability is limited to the amount paid by the User to VaultLM in the three months preceding the event causing the damage. For the free service, for which no payment is made, total liability is limited to € 100.
9.2 VaultLM is in no event liable for direct damage, indirect damage, consequential damage, lost profit, missed savings, business interruption, reputational damage, loss of goodwill, loss or corruption of data outside VaultLM’s direct control, costs of recovery or reconstruction of data, or damage resulting from decisions made based on AI output.
9.3 VaultLM is not liable for errors, inaccuracies, hallucinations, omissions, delays, provider outages, model changes, data policies of model providers, price changes of model providers or other circumstances relating to external AI models, API providers, hosting providers, payment providers or other third parties, unless mandatory law provides otherwise.
9.4 The User acknowledges that LLMs and other AI models can make mistakes and that output must always be reviewed by the User before being used for decisions, external communication, publication, professional advice or legal, financial, medical, privacy-sensitive or other high-risk purposes.
9.5 The limitation of liability does not apply where exclusion or limitation is not permitted under mandatory law.
Article 9a — Assignment
9a.1 We may assign our rights and obligations under these terms, in whole or in part, to a group company or legal successor continuing the operation of the service, provided the level of protection of your data is not reduced. We will announce any such assignment on this website.
Article 10 — Governing law and disputes
10.1 These Terms are governed by Dutch law, unless mandatory law provides otherwise.
10.2 Disputes will first be resolved through consultation as far as possible.
10.3 If this fails, the competent court in the district where El Niño B.V. is established has exclusive jurisdiction, unless mandatory law designates another court.
Document 2 — Vault as a Service: Additional Terms
Applicable when the VaultLM vault functionality is used as a standalone storage service, as part of the web application, as part of a team or organisation environment, or as part of a B2B/API integration.
Article 1 — What the Vault is
1.1 The VaultLM vault (“Vault”) is an encrypted storage environment for documents, derivative versions, token maps and related metadata.
1.2 Files are stored in the Vault, indexed for secure search and retrieval functions and made available only to authorised users or API routes that comply with configured permissions.
1.3 The Vault is not a general cloud storage service. It is specifically designed for documents used in combination with controlled AI analysis, pre-inference masking, source references and secure anonymised sharing.
Article 2 — Encryption, access and organisation
2.1 Files in the Vault are encrypted at rest and in transit. Keys are managed by VaultLM or, where commercially agreed, according to a specific key-management or deployment arrangement.
2.2 Keys are not shared with AI model providers.
2.3 Access to the Vault is determined by permissions configured when the environment is created. Vault owners can add users, assign roles and revoke access.
2.4 VaultLM employees do not have access to the content of Vault environments, except for technical support at the express request of the vault owner or where strictly necessary and contractually permitted for security, incident handling or legal obligations.
2.5 Files are organised by Vault, workspace, matter, client, project or team. Each Vault has its own permission structure, logbook and retrieval index.
2.6 Files from different Vaults are not combined unless the User has explicitly permitted this within the application or through a business configuration.
Article 3 — Architectural access principle
3.1 When a User asks an AI question, VaultLM retrieves only relevant, minimal passages from Vault environments to which that User has access.
3.2 Before context is sent to an AI model, VaultLM applies masking, minimisation and route control where possible.
3.3 The Vault acts as an authorisation layer: if a User is not allowed to open a file, the AI cannot retrieve content from that file through that User.
3.4 This is an architectural principle, not merely a policy setting: a User can never retrieve more through AI chat than that User is permitted to open in the Vault.
Article 4 — Use by end users
4.1 End users may use the Vault to store, organise, query with AI, mask and securely share anonymised confidential documents.
4.2 The end user remains responsible for:
- lawfully uploading documents;
- setting and reviewing access rights;
- reviewing AI output and source references;
- reviewing masking before documents are shared externally;
- deleting documents when retention is no longer necessary or permitted.
4.3 The Vault does not prevent a User with access to a document from manually copying, exporting, summarising or sharing its content outside VaultLM. Access should therefore be granted only to the extent appropriate for the User’s role and purpose.
Article 5 — Use by organisations, developers and API integrations
5.1 Organisations, developers and integration partners using the Vault as part of their own product, workflow, customer environment or API integration are subject to additional API, security, SLA and data processing terms agreed when entering into a business contract.
5.2 These business terms may include:
- permitted scope of use and volume limits;
- allocation of responsibilities between VaultLM as processor and the organisation as controller;
- subprocessors and corresponding contractual safeguards;
- storage location, model routes and transfer restrictions;
- incident response, data breach procedures and audit options;
- responsibilities towards the organisation’s or developer’s own end users.
5.3 The organisation or developer is responsible for configuring its own end-user experience, consents, privacy information, internal authorisations, logging, support processes and compliance with applicable laws and regulations in its own product or workflow.
5.4 VaultLM provides technical documentation, test environments and integration support as agreed. Unless otherwise agreed in writing, VaultLM is not responsible for the legal assessment of the end product into which the Vault is integrated.
Article 6 — Retention periods and deletion
6.1 Files remain stored while the account or organisation is active, unless a shorter retention period has been configured.
6.2 Upon account termination, files are deleted from production systems within 30 days and from backups within 90 days, unless a data processing agreement, legal obligation or business arrangement specifies a different period.
6.3 Deletion may be accelerated upon request. Send requests to hi@sharesafe.ai.
Article 7 — Availability and liability for data loss
7.1 VaultLM aims to minimise downtime for the Vault service. Organisations requiring an SLA may agree separate terms on availability levels, incident response and escalation procedures.
7.2 VaultLM implements reasonable technical and organisational measures to protect stored files, including encryption, access control and backups.
7.3 Nevertheless, VaultLM cannot guarantee loss-free storage under all circumstances. Users are advised to keep critical files outside VaultLM as well.
7.4 In the event of demonstrable data loss caused by a failure of VaultLM, liability is limited to reimbursement of subscription fees for the period in which the loss occurred, unless mandatory law provides otherwise.
Document 3 — Anonymisation as a Service: Additional Terms
Applicable to VaultLM’s anonymisation and masking service, both through the web application and through the API and business integrations.
Article 1 — What the Masking Service is
1.1 VaultLM’s anonymisation service (“Masking Service”) detects and masks sensitive information in documents before information is sent to an AI model or stored as a shared file.
1.2 The service replaces detected values with stable temporary tokens, such as [PERSON_01], [IBAN_01], [EMAIL_01] or [COMPANY_01].
1.3 The link between a token and the original value is referred to as the “token map”.
Article 2 — What the service masks
2.1 The Masking Service is designed to detect and mask categories including:
- names of natural persons;
- email addresses, phone numbers and postal addresses;
- citizen service numbers and comparable national identification numbers;
- bank account numbers, IBANs, credit card numbers and other financial identifiers;
- IP addresses, device identifiers and technical identifiers;
- contract parties and company names where used as direct identifiers;
- customer numbers, case numbers, reference numbers and similar identifiers;
- other values recognised by context as personal data, business-confidential information or sensitive information.
2.2 The service uses pattern recognition, Named Entity Recognition, contextual language analysis and additional detection methods. Exact coverage depends on language, document type, file quality, domain and text complexity.
Article 3 — Limits of the Masking Service
3.1 Automated anonymisation is a tool, not a legally conclusive guarantee. The Masking Service has inherent limitations.
3.2 Incomplete detection. Not all sensitive information is detected in every document. Unusual spellings, encoded names, indirect identification through combinations of data or domain-specific jargon may be missed by the service.
3.3 Indirect identification. Masking direct identifiers does not exclude the possibility that a person, organisation or case remains identifiable based on a combination of unmasked data, such as role, location, date, context or rare facts. VaultLM masks direct identifiers; fully eliminating indirect identification risk is outside the standard scope of the service.
3.4 Document types. The service performs best on textual documents. Scanned images without OCR, visually hidden text in PDF layers, handwritten text, complex tables, charts or images may create limitations.
3.5 No GDPR compliance as an end product. Use of the Masking Service is not a substitute for a formal anonymisation or pseudonymisation assessment under the GDPR.
3.6 VaultLM makes no statements about the legal status of files processed by the Masking Service under privacy law. Whether a file generated by VaultLM can legally be considered fully anonymised depends on the context and requires an assessment by the controller.
3.7 Users are responsible for reviewing the output of the Masking Service before externally sharing, publishing or using anonymised files in legal, medical, financial or privacy-sensitive contexts.
Article 4 — Use by end users
4.1 End users may use the Masking Service to mask documents before AI processing, to create anonymised or masked versions and to create secure sharing packages.
4.2 The end user remains responsible for:
- lawfully uploading and processing documents;
- verifying that the right information has been masked;
- assessing whether indirect identification remains possible;
- reviewing output before external use or sharing;
- assessing whether professional or legal advice is required.
4.3 The Masking Service is intended to reduce risks and increase auditability. The service does not guarantee that a document is anonymous in the legal sense.
Article 5 — Use by organisations, developers and API integrations
5.1 Organisations, developers and integration partners using the Masking Service through the API or as part of their own product, workflow or customer environment are responsible for correct application in their own context.
5.2 These parties are responsible for, among other things:
- correctly configuring masking parameters for their document type, domain and risk profile;
- testing and validating output before production use or external communication;
- informing their own end users about the limitations of automated anonymisation;
- determining whether human review is mandatory;
- complying with applicable privacy, sector and professional rules in the end product;
- including appropriate disclaimers, privacy information and contractual arrangements towards their own users or customers.
5.3 VaultLM provides technical documentation, test environments and integration support as agreed.
5.4 Unless otherwise agreed in writing, responsibility for privacy compliance in the end product lies with the organisation, developer or integration partner using the API or Masking Service.
Article 6 — Token map and rehydration
6.1 The link between masked tokens and original values is stored as an encrypted token map in VaultLM.
6.2 The token map does not leave VaultLM’s secure environment and is never sent to AI model providers or included in shared files.
6.3 Rehydration — restoring original values in a masked document — is possible only for users with the required permissions.
6.4 When a secure sharing package is created, rehydration is blocked for the recipient by default.
Article 7 — Derivative objects and secure anonymised sharing
7.1 A file processed through the Masking Service is a derivative version of the original. The original file remains unchanged in the Vault.
7.2 The original and derivative version each have their own logbook, permission structure and lifecycle.
7.3 Deleting the original file does not automatically delete the derivative version, and vice versa. Both must be deleted separately if desired, unless a specific retention setting provides otherwise.
7.4 VaultLM may enable Users to securely share an anonymised or masked version of a document, analysis, summary or AI output with third parties.
7.5 Secure anonymised sharing may include settings such as expiry date, access rights, download policy, watermark, source references and logbook registration.
7.6 The User remains responsible for reviewing the masking output and for the decision to make a sharing package externally available.
Article 8 — Logbook and audit
8.1 Each masking action is logged: which document, what type of tokens were created, which route was used, by which user and at what time.
8.2 This logbook is available to the vault owner and, depending on the subscription, can be exported for internal audit or external accountability.
8.3 The logbook does not contain original values; it records only the fact that masking took place, the token type and action metadata.
Article 9 — Liability
9.1 VaultLM is liable for the correct technical operation of the Masking Service in accordance with these Terms and the product documentation.
9.2 VaultLM is not liable for:
- damage resulting from failure to detect sensitive information that falls outside the described categories, is written atypically or remains indirectly identifiable;
- legal consequences of using anonymised files that the User considered fully anonymised without its own assessment;
- damage resulting from sharing files without prior review of masking output;
- decisions, publications or external communications based on AI output without human or professional review.
Questions about these documents? Contact hi@sharesafe.ai.