2026-08-14 · Djibril Cissé
Privacy is not a slogan. It is an architecture.
Culture, data and AI: choosing what circulates — and what remains ours
Privacy, GDPR and sovereignty are not badges. They are architectural choices: what enters a system, who reaches it, what leaves it and how we regain agency.
I. Our traces are not neutral
A voice note. A quote. A family photograph. A work exchange. A playlist, a notebook, a client file, an idea formed late at night. In technical language, all of this can become “data”. But data is never only data: it can be tied to a voice, a craft, a relationship, a family, a decision or a vulnerability.
A single datum may be a number. Connected to a life, it becomes context — and context deserves care. That is as true for a person as it is for a small business: its professional language, exceptions, trusted relationships and accumulated decisions are part of its living culture. Digital tools can help recover it. They can also scatter it, flatten it or make it opaque to the people who produced it.
The problem is not that everything circulates. Sharing, collaborating, publishing and using external services can be fruitful. The problem begins when circulation becomes the default setting, without us really knowing what enters a system, who reaches it, what remains there and what can leave.
II. Privacy begins before the server
Privacy is often reduced to a cookie banner, terms and conditions, a VPN or encryption. Those things matter. But they come after a simpler question: why does this data need to enter here at all?
Before connecting an agent to an inbox, a drive, a messenger or a business tool, we should be able to answer: what is the minimum that is actually useful? Which human, provider, model or agent can see or process it? Where does it travel? How long does it remain? Can we correct it, export it, delete it and stop the connection?
Privacy begins where someone decides that a door will not be opened.
That decision is not a brake on innovation. It is what makes innovation inhabitable. An agent does not need to know everything to be useful. It needs to know what it is allowed to see. A prompt is not permission.
III. GDPR and Swiss data protection: not stickers, but design questions
The EU General Data Protection Regulation (GDPR) and Switzerland's revised Federal Act on Data Protection are neither slogans nor decoration for a server. They bring us back to material questions: the purpose of a processing operation, minimisation, transparency, security, access, retention, processors and responsibility.
GDPR and Swiss data protection are not stickers on a server. They require us to decide what our systems may retain, connect and circulate.
They are not identical, and their applicability always depends on the processing, the people concerned, the roles, the sector and the actual scope. This article is therefore not legal advice for a specific project. It argues for a design discipline: do not announce “compliant”, “confidential” or “sovereign” as a general formula when flows, providers, models, backups and exit rules have not been examined.
Yet these safeguards can be designed when they matter: a confidential scope, architecture hosted in Switzerland or Europe, separate access, minimised data, defined retention, real exportability and the necessary documents. Not every craft or organisation needs the same depth. That is exactly why the requirement should be chosen and documented rather than indiscriminately promised.
IV. Sovereignty is neither a bunker nor a slogan
Being sovereign does not mean owning every server, refusing every external model or cutting oneself off from the world. We can use a cloud service for a defined task, collaborate on a platform and keep a workspace of our own. What matters is the ability to know, choose and leave: where context lives, which accounts and keys govern it, which dependencies exist, how data is recovered and how a door is closed.
Sovereignty is not about owning every server. It is about not being imprisoned by a door we do not understand.
Infrastructure becomes more sovereign when it leaves an exit: inspect, correct, export, delete, disconnect. It becomes more trustworthy when its limits are named: what is hosted here, what travels there, what remains human, what needs validation. Absolute security does not exist; legible and revisable architecture does.
V. Architecture sized to the need
Not every mission needs the same level of protection, location or governance. A craft business organising quote requests, a studio assembling creative archives and a practice handling sensitive information do not start from the same place. Treating them as if they had the same constraints would be as irresponsible as selling them the same automation.
At Agentic Realism, Response-able AI, confidentiality, Swiss or European hosting, reversibility and a GDPR/Swiss-data-protection scope can therefore become architectural choices. They are set according to the activity, data, responsibilities and budget: location of computing and storage, backups, processors, models, access, retention, export and validation rules.
This is not a “privacy option” added to a machine already connected everywhere. It is a set of choices made before connections make the way back expensive. Your data is not the free fuel for your assistant.It enters a system because a specific purpose justifies it — or it does not enter.
VI. Culture must not become the next extractive field
The question reaches beyond organisations. AI can help preserve, retrieve, index or pass on chosen archives. It can connect a reading to a project, a photograph to a story or know-how to the person who may carry it forward. But it should not vacuum up a life, a collective or a family memory by default in order to produce more prediction, engagement or content.
For us, respecting culture also means respecting provenance, consent, attribution, fidelity to a voice, the right to remain off-stage and the right not to become a case study. A living memory does not become more alive because it is poured into an opaque database.
Culture is not a field to optimise. It is a relationship to protect, pass on and let evolve.
That is what we mean by living context: situated, evolving and revisable memory, chosen rather than captured. Living context does not ask to be vacuumed up. It asks to be welcomed with boundaries.
VII. Innovate with boundaries
Privacy is not a punishment that makes AI slow or useless. Good boundaries reduce noise, clarify responsibility and give people a reason to trust the system. They make it possible to move forward without requiring the abandonment of what matters.
We do not need AI that enters everywhere. We need AI that knows how to wait at certain doors.
Speed without boundaries creates volume. Speed with responsibility creates continuity. It is that continuity — between a person, their work, their tools, their memory and their decisions — that we want to help build.
Your activity deserves an assistant that knows its limits
We do not connect tools blindly. We begin by looking at what should remain human, what can be prepared, which data is necessary — and which data must never leave.
Depending on your activity, we can define a simple first step, an architecture hosted in Switzerland or Europe, or a more demanding scope of confidentiality and reversibility. No generic promise: documented, proportionate and controllable architecture.
Related reading: agentic cultural reclamation, agential cuts and OpenClaw or Hermes Agent in French-speaking Switzerland.
For the legal frameworks mentioned here, see the Swiss Federal Act on Data Protection and the EDPB SME guide on processing principles.