Contact
Support · Berget AI

Will it last?

Ownership levelSubstantialnone·limited·partial·substantial·fullAnalytical input B ยท 70.4/100

This page is a projection of the one entry record, the Transparency factor that Support covers. The full verdict is set by all four factors together, floor-weighted so the weakest caps the whole.

Which domain expands which factor
  • AssessUse & modify + Transparency
  • ImplementData control + Doesn't fail you
  • UseDoesn't fail you
  • SupportTransparency

Security disclosure & trust surface

Berget's Security page is the trust surface, covering EU-only processing, no-training and zero retention, and it documents a PGP-based channel for encrypted vulnerability reporting. A fuller coordinated-disclosure programme - a published security.txt, advisory feed, or bug-bounty - was not surfaced this session, so for coordinated disclosure use the PGP/security contact rather than a standing bug-bounty channel.

Support & community channels

Support comprises developer documentation at docs.berget.ai plus a developer portal. The breadth of community channels (Discord/forum) and the response commitments attached to paid tiers were not detailed in the sources reviewed, so confirm the support SLA that comes with your plan during onboarding.

How this scores

The ownership factor this domain covers, drawn from the one entry record.

2

TransparencyAre the binding terms published, legible and independently checkable?

Moderate

The binding Terms, Privacy and Security pages were read this session and confirm ZDR, customer-retained ownership, the 30-day export window and EU-only processing in-clause. Held below strong because the GDPR DPA's own clauses and the sub-processor list are undisclosed/unread and no SOC 2 / ISO 27001 attestation exists.

How this scores
Not a scored AOI dimension. For a hosted provider, transparency is whether the binding terms are published, legible and were actually read - the read/unverified evidence below, not a certification. A strong rating here must trace to a retrieved binding document.
What this means for adoptionYou substantially own workloads here: the binding Terms confirm zero retention of prompt/output content, customer-retained ownership under a service-scoped licence, and a 30-day export window, while EU-only residency and Swedish ownership keep you outside US CLOUD Act reach and a portable open-weight exit keeps switching cheap. What holds it below full is verification depth - no independent audit or SOC 2 / ISO 27001 attests the data-handling guarantees, and the GDPR DPA's clauses and sub-processor list were not reachable. Adopt as an EU-sovereign default, but contractualise the data terms in the DPA and request current attestation status for regulated procurement.

Sources

The same evidence records as the entry sheet. Read means the text was verified; unverified means it is known to exist but not yet read.

Terms of serviceread2026-07-25
Berget AI Terms of Service: Berget will never store any of the actual prompt content used as model input or any of the output content generated by the LLMs it hosts (zero data retention); as between Berget and the Customer, the Customer retains all title and intellectual property rights in the Customer Data and grants Berget a licence limited to hosting, processing and transmitting it to provide the Service; Customer Data is retained for 30 days after termination for export/recovery then irreversibly deleted; Berget may process aggregated, anonymised data that does not identify the Customer or any natural person.
Privacy Policyread2026-07-25
Berget AI Data Privacy Policy: all data stays within EU-based servers in Sweden and never leaves Berget's infrastructure; zero retention; GDPR-compliant by design.
Securityread2026-07-25
Berget AI Security page: industry-standard technical and organisational measures including encryption in transit, network isolation, access controls and system monitoring, plus a PGP key for encrypted vulnerability reporting; no SOC 2 / ISO 27001 certification is stated.
Data Processing Addendumunverified2026-07-25
Berget AI publishes a Data Processing Agreement governing the processing of personal data contained in Customer Data; its internal clauses (transfer mechanism, SCCs, sub-processor list) were not reachable this session.
Vendor announcementread2026-07-25
Berget AI landing page - Swedish-owned, EU-sovereign inference, not subject to the US CLOUD Act, no US data transfers, OpenAI-compatible (marketing framing).
Documentationunverified2026-07-25
OpenAI-compatible chat completions API at https://api.berget.ai/v1 with bearer API keys; developer documentation.
Third-party analysisread2026-07-25
Independent Mastra model directory lists Berget.AI as a provider using the OpenAI-compatible /chat/completions endpoint at https://api.berget.ai/v1, serving multiple open-weight models.
Third-party analysisread2026-07-25
Independent EU tech press (Tech.eu): Berget AI is a Stockholm-founded (2024) provider running open language models on sovereign infrastructure in Sweden so sensitive data stays within national borders under EU jurisdiction; raised EUR 2.1M (Luminar Ventures), with the Swedish central bank (Riksbanken) as flagship customer and 300+ pilot/commercial customers.
Vendor announcementunverified2026-07-25
Pay-as-you-go per-token pricing plus prepaid token packs; ZDR the default.
Vendor announcementread2026-07-25
Berget Code launch: agentic coding assistants that keep code in Sweden; Berget does not train any models on the code sent to the service.