For boards & management

Bring your board into the AI era.

Better preparation. Stronger strategic discussions. Better decisions.

BoardLens brings the entire board into one intelligent, secure environment: board materials, institutional memory, outside intelligence, best practices, meetings, decisions and governance.

Never trained on your dataSOC 2 audit-ready, monitored dailyGDPR compliantEU data residency (Frankfurt)

What BoardLens does

BoardLens brings the entire board into one intelligent, secure environment, helping management run better meetings and directors come better prepared.

  • Intelligent preparation. Connect decks, pre-reads and minutes to prior meetings, giving directors the context and decisions that matter before the meeting starts.
  • Continuity between meetings. Carry decisions, commitments, open items and follow-ups forward so each cycle starts where the last one ended.
  • Outside context. Bring relevant market signals, industry developments, governance best practices and regulatory changes around the issues being discussed.
  • Governance in the background. Keep meetings, votes, approvals, deadlines, D&O, guarantees, covenants and other obligations on one governance timeline.
  • Secure AI for the whole board. Give directors and management a purpose-built environment for sensitive board information instead of fragmented external AI workflows.

The result: less board administration, better-prepared directors, stronger strategic discussions, clearer decisions and continuity between meetings.

“At Tallence, both our executives and board members use BoardLens together. It's become our shared platform for stronger strategic conversations and better-prepared board meetings.”
Wolf-ingomar FaecksWolf-ingomar FaecksChairman of the Supervisory Board, Tallence AG

Built for enterprise security

BoardLens gives your directors a secure, sanctioned way to use AI on your board materials, instead of leaving you to wonder what tool they'll turn to otherwise. With BoardLens, you stay in control of your data:

  • Your data is never used to train any AI model: contractual with every provider, and every contract is open for your review in our Trust Center.
  • Everything is encrypted in transit and at rest, stored exclusively in the EU (AWS Frankfurt) with dedicated keys.
  • Every analysis shows its work: the evidence and citations behind each point, exportable whenever you need them.
  • SOC 2 audit-ready with controls monitored daily by an independent platform, fully GDPR compliant, and glad to work directly with your IT, security or compliance team on any review.
Shadow AI in the boardroom

82% of directors say they've used generative AI in their board work in the past six months, yet 54% say their company gives them no guidance on how to do it safely.

BoardLens is here to set the standard for what governance-grade AI means. The answer isn't slowing AI down. It's building the guardrails that let boards move faster, with confidence.

Source: Diligent Institute.

How we govern our own AI

Boards ask management hard questions about AI governance. We hold BoardLens to the same standard we help boards apply.

  • Every AI call is logged with the model used, the exact prompt version and its cost, a complete audit trail of every AI decision the platform has ever made.
  • Prompts are versioned and tracked like policies, not buried in code. When the AI's instructions change, there is a record of what changed and when.
  • Every factual claim must carry a citation to a specific document and page, enforced at the database level. Unverifiable claims are rejected, never silently shown.
  • Releases are gated on automated citation verification against a regression set, judged by an AI from a different vendor, so no model grades its own work.

Security questions, answered

The questions IT, security and compliance teams ask us, answered plainly. For evidence behind every answer, visit the Trust Center.

Do you train AI models on our board materials?
No. Never. Every AI provider we use is bound by a signed data processing agreement with an explicit no-training commitment. Your data is used to answer your questions, nothing else. Your compliance team can review every one of these contracts in our Trust Center.
Where is our data stored?
All customer data is stored in AWS in Frankfurt, Germany, encrypted at rest with dedicated keys and in transit via TLS. Nothing is stored on laptops, file-sharing tools or third-party services. AI providers process queries under the data processing agreements above and do not retain your documents.
How is our data separated from other customers'?
Every record in our database is bound to your organization's tenant ID at the schema level, and every query is scoped to that ID by the application, without exception. Isolation is also enforced by the database itself through row-level security, independently of application code. One board's data can never appear in another board's results. This isolation is one of the controls monitored daily as part of our SOC 2 program.
Are you SOC 2 compliant?
Our SOC 2 program reached 100 percent control readiness in July 2026 and we are now in the formal audit observation window with the independent attestation report expected in October 2026. In the meantime our systems are monitored continuously by Drata, an independent compliance platform, and you can see our live control status in the Trust Center.
Are you GDPR compliant?
Yes, fully. We built for GDPR from day one: records of processing, a data protection impact assessment for document analysis, data subject rights procedures, a breach notification procedure, and a transfers register covering every US subprocessor. All documentation is available for review.
What happens if the AI hallucinates?
This is the core of how BoardLens is engineered. Every factual claim must carry a citation to a specific document and page, enforced at the database level. Click any claim and the source page opens next to it. Outputs that fail validation get one automated correction attempt and are otherwise rejected, never silently shown. Every release is gated on automated citation verification against a regression test set, and output quality is judged by an AI from a different vendor, so no model evaluates its own work.
What happens in a security incident?
We can revoke all active sessions centrally, take the platform fully offline in under 1 minute at a single control point, and disable all AI processing independently of the rest of the system, all while preserving complete forensic logs. Threat detection runs in every AWS region worldwide and alerts a human within minutes. Customers can also irreversibly delete their data at any time.
How is the platform itself secured?
There are no servers to break into: the platform runs on immutable containers with no remote access, rebuilt from scratch on every release. A web application firewall, network-level blocking of administrative ports, encrypted storage, and secrets held in a vault with database credentials that rotate automatically every week. Every code change passes automated security analysis and dependency scanning before release.
Do you do penetration testing?
Yes. An independent security firm performs penetration testing against the platform, alongside continuous automated testing: static security analysis on every code change, dependency scanning, and daily independent monitoring of all controls. The latest penetration test report is available under NDA via the Trust Center.
Can we use our own AI keys, and are you ISO 27001 certified?
Both are on the enterprise roadmap. Because all AI calls flow through a single governed router, per-customer model keys are architecturally straightforward, and our SOC 2 control set substantially maps to ISO 27001. Talk to us if either is a requirement for your organization.
Can our security team verify any of this?
Yes, that is the point. Our Trust Center gives your IT, security or compliance team direct access to our subprocessor contracts, live compliance monitoring status and security documentation. Do not take our word for anything.

What it means for your board and management

More effective meetings

Time goes to decisions, not bringing everyone up to speed.

Better decisions, fewer surprises

Relevant context surfaces while the board can still act.

Stronger board-management dialogue

A shared, well-prepared basis for strategic discussion.

Less preparation and administration

Continuity and governance stay organized between meetings.

Adopting BoardLens as a shared platform is a decision a growing number of boards are making together. If that is a conversation your board would value, we would welcome it, and we are glad to work directly with your IT, security or compliance team on any review.

Share the overview with your board

A one-page summary of what BoardLens does and how we secure your data, ready to send to your management, board colleagues and IT team.

Download the PDF overview →