Knowledge that
makes the difference.
Expert articles, deep dives and current insights from the world of AI development, SaaS and digital transformation.

Records of Processing Activities (ROPA): Who Needs One and What to Include
The record of processing activities is mandatory under Article 30 GDPR for most companies, including many that wrongly invoke the SME exception. We show the mandatory content and the steps to build your own ROPA.

AI and Data Protection: What Employees Must Know About ChatGPT & Co.
A prompt containing customer data is, under data protection law, a completely normal processing operation. The key GDPR rules for ChatGPT, Copilot and Co. at work, and where the EU AI Act additionally applies.

GPT-5.6 vs. Claude Fable 5: Model Tiering for Smart AI Workflows
GPT-5.6 (Sol, Terra, Luna) and Claude Fable 5 show that frontier providers are tiering their models. This article explains pricing, benchmarks, and cost-efficient combinations.

"GDPR Certification" under Article 42 vs. Certificate of Attendance: The Difference
A "GDPR certification" under Article 42 and a training certificate of attendance are two fundamentally different things. What each one really means, and why the difference matters for you.

Data Protection for Employees: The 10 Most Important Rules for Everyday Work
A practical checklist with the ten most important data protection rules for everyday work, from locking your screen to internally reporting data breaches, with GDPR references.

Data Processing Agreement (DPA): When You Need One and What Must Be Included
As soon as an external service provider processes personal data on behalf of your company, a data processing agreement (DPA) under Article 28 GDPR is mandatory. The mandatory content and a review checklist.

Data Protection Training: Requirement, Process, and Documenting Proof Correctly
Data protection training is more than a signed form: only real content plus a clean, person specific record of proof fulfill its purpose. We show the legal basis, the process, and what a template can really deliver.

GDPR Training Requirement: Do Employees Have to Be Trained?
A single GDPR article stating "employees must be trained" does not exist. Why training is nevertheless practically unavoidable, and how often a refresher makes sense.

Article 32 GDPR: What TOMs Your Company Needs (and Why Training Is Part of It)
After a data breach, the supervisory authority checks your TOMs first. This article shows what Article 32 GDPR actually requires, provides a sample table, and explains why documented employee training is part of it.

What Does an AI Chatbot Cost? Prices & Cost Factors 2026
AI chatbots range from affordable SaaS subscriptions to custom RAG development. This overview covers the cost models, ongoing LLM costs, and the most important cost factors, with current vendor prices as of 2026.

Accountability Under the GDPR: How Companies Prove Their Compliance
The accountability principle (Article 5(2) GDPR) demands more than good intentions: companies must be able to prove their data protection compliance. Here is which documents count and what is at risk if proof is missing.

AI Transcription & Meeting Minutes 2026: Tools Tested
Eight AI tools for transcription and meeting minutes in 2026 compared head to head — with pricing, German-language support, EU data residency and the legal situation in Germany (§ 201 StGB, GDPR, BetrVG).
All images in this overview are AI-generated illustrations.AI transparency
Never miss an insight
Subscribe to our newsletter and get the latest articles straight to your inbox.
No spam. Unsubscribe anytime.
Ready for your AI competence certificate?
Get your AI certificate – flexible, online, with a documented certificate of participation for building AI literacy (Art. 4 EU AI Act).