EU-native AI integration & governance

Know what your AI is doing.

Your team is already using AI in a dozen places. Greyrox is the one place where every tool and agent is found, given its own identity, permissioned per action, logged as it works, and priced — so you can say yes to the next workflow instead of quietly hoping.

Built for teams of 10–250 · Typically live in 2–3 weeks · No engineers required

In production

Gottmer — children's publishing, Netherlands. Editorial and production workflows governed from the first run, delivered on our own platform, with no third-party engine underneath.

Why integrate

The case for AI isn't compliance. It's hours.

Your team gets hours back, clients get faster answers, and you stop falling behind competitors already doing this. Governance is what makes it safe to keep going — but it isn't why you start.

5+ hrs
saved per week, per employee

Hours back every week

Routine drafting, summarising, and data entry get handled automatically — freeing your team for the work only they can do.

McKinsey, 13,000+ workers across 15 countries, 2026
56%
faster task completion, at best

Faster turnaround for clients

Responses and deliverables move in a fraction of the time, without adding headcount to keep up with demand.

Harvard Business Review, 2026
58%
now produce work they couldn't a year ago

Consistency at scale

The same quality bar on the first task of the day and the fiftieth — less depends on who's busy or who's tired.

Microsoft Work Trend Index, 20,000 knowledge workers, 2026
88%
of organisations use AI somewhere in the business

Keep pace without a tech team

Connect the AI tools already changing your industry, without hiring engineers to wire them together yourself.

McKinsey, 2025

These figures reflect broader workplace AI research, not Greyrox's own measured customer results.

Cost visibility

See what every workflow costs — before the invoice tells you.

AI spend arrives as one line on a card statement, and nobody can say which team spent it. Greyrox prices each workflow as it runs, so the bill is attributable before it lands.

01

Cost per workflow

Spend broken out per workflow and per run, not aggregated into a single unexplainable total.

02

Cheaper model, same result

Where a task is templated and the risk is low, Greyrox recommends a cheaper model — only if the alternative is still EU-hosted.

03

Risk beats savings, always

A high-risk workflow is never switched to a cheaper model to save money. Cost optimisation stops where the risk tier begins.

€2,340
monthly spend
18,600
runs this month
€0.13
avg. cost per run
€780
savings identified

Figures shown are illustrative.

The gap

Nobody set out to build a governance gap. It adds up one integration at a time.

Most companies are already using AI somewhere — in email, in a browser extension, in a tool a client asked for. "Shadow AI" is the part nobody signed off on: a personal ChatGPT account used for client work, a free trial that quietly became a daily habit. Nobody's being reckless. It's just how tools spread when there's no single place to see them all.

What leadership thinks is running
Company email & docsApproved
CRM assistantApproved
Meeting notetakerApproved
What discovery actually findsDiscovered
Company email & docsApproved
CRM assistantApproved
Meeting notetakerApproved
Personal ChatGPT accountShadow
Unvetted browser extensionShadow
Third-party CV screening toolShadow

Greyrox continuously scans for AI activity across your systems — sanctioned or not — and surfaces anything unreviewed the moment it appears.

Visibility

You don't know where AI runs

Staff adopt AI tools faster than IT can track them. There's no single list of what's connected to what.

Fragmentation

Point solutions don't add up

One tool flags data leaks, another checks model bias, a third does access logs. None of them talk to each other.

Capability

Compliance guidance assumes a team

Most AI governance advice is written for enterprises with dedicated compliance staff. You have neither the time nor the headcount.

How it works

One engine. Discover, Understand, Act.

The point isn't a bigger inventory — it's a safe way to add the next workflow. Every one, new or already running, goes through the same three checks before it's trusted with a live system.

01 · Discover

See what's already running

A pass across your accounting or expense feed, plus whatever CRM, ERP or collaboration tools you connect, shows what's already in use — so a new workflow isn't the first thing on the list.

02 · Understand

Classify what it actually is

Each workflow is tied to its real EU AI Act tier and its own open actions, with permissions and an audit trail applied as it goes.

03 · Act

Roll it out safely

Every workflow — your team's idea or ours — goes through the same policy check before it can touch a live system. Approved actions run, anything sensitive pauses for a person, and the guardrails don't loosen on the tenth workflow just because the first nine went fine.

How the review gate works

Every workflow request gets checked against your policies before it touches a live system, whether it reads a spreadsheet or sends an email to a client. Actions inside policy run immediately. Anything that reads sensitive data, writes to a system of record, or sends something outside the company pauses for a named person to approve — every time, not just the first time.

Discovery works the same way in reverse: connect your accounting feed or another system, and Greyrox flags AI vendor line items and existing usage automatically, without reading mailbox or document contents.

The agent gateway

Everything your agents are doing, on one screen.

The agents do the work. Greyrox sits in between — logging what they touched, and holding anything sensitive for a person to approve first.

Requests
AI agent
Enforces & logs
Greyrox gateway
Acts on
Your systems

However many AI tools you connect, they all pass through the same layer — so every action, from any agent, gets the same identity check, permission, and log entry.

What the gateway guarantees
One connection point
Every agent, from every tool, calls through the same gateway — not five logins with five risk profiles.
Every agent has its own identity
No shared logins. You always know exactly which agent did what.
Per-action approval
An agent cleared to draft emails isn't automatically cleared to send them.
A record of everything
Every action an agent takes is logged automatically — nothing to reconstruct after the fact if something needs review.
Humans stay in the loop
Anything sensitive pauses for a person to approve instead of running unattended.

An agent cleared to draft emails isn't automatically cleared to send them.

PermissionsClient Onboarding Assistant
Read documents
CRM & records — Salesforce, HubSpot
Auto-approved
Draft content
Client communications
Auto-approved
Send emails
Outbound to clients
Needs approval
Delete records
Any system
Blocked
Client Onboarding AssistantAwaiting approval
Send the onboarding welcome email to our new client.
Drafted the welcome email from our template. It goes directly to a person outside the company, so I'm holding it for your approval — that's the Article 50 transparency requirement on this workflow, and your client-communications policy asks for a named sender.
✓ Read client details ✓ Draft welcome email Send email — awaiting approval
Create with AI

Describe the workflow. Greyrox builds it.

No canvas required to start. Type what you want in plain English and watch the steps take shape as you refine it — then send it for review, or hand-build it yourself node by node if you'd rather.

Steps can connect to
Salesforce HubSpot Exact Online Microsoft 365 AFAS + more
Create with AI Drafting
Something that reads new client briefs and drafts a project plan for our team.
Got it — I've drafted five steps below. The plan lands in your project tracker for the team to review.
Also flag anything mentioning pricing for review.
Added — any plan mentioning pricing will need approval before it's used.
Building your workflow
Trigger
New client brief received
Agent
Summarise & extract key terms
Reads
Client folder & past plans
Writes
Draft plan to project tracker
Outcome
Team reviews before it's sent

← swipe to see the full workflow →

The gate nothing skips

Every draft — chat-built or hand-built — goes through policy review before it goes live. A cost or convenience fix can never quietly skip that step.

EU AI Act

Every workflow carries its real classification — not a gut feeling.

The tier is what the workflow is: it follows from what the workflow touches and it barely changes. The open actions are the work state — that's the number that moves as you close things out. Greyrox keeps them apart, and keeps them attached to the workflow all the way into production.

Compliance snapshot3 of 6 workflows shown
Minimal
Invoice Intake Agent
Finance · no open actions

No specific obligations. Logged and permissioned anyway, because that's how you keep it that way.

Low concern
Limited · Art. 50
Client Onboarding Assistant
Client advisory · 1 open action

Sends content directly to a person outside the company, so the Article 50 transparency obligations apply — in force since 2 August 2026. Its send step is held for a person to approve until a named sender is set.

Worth a closer look
High · Annex III
CV Screening Agent
HR · 3 open actions

Recruitment screening is explicitly listed as high-risk. Chapter III obligations apply from 2 December 2027, deferred from August 2026 by that summer's Omnibus amendment — the substance didn't change, only the date. Which obligations land on you depends on whether you built the system or deploy a vendor's.

Address this
The dates most of the market still gets wrong

The AI Act's Digital Omnibus amendment — Regulation (EU) 2026/1744 — entered into force on 27 July 2026. It pushed high-risk obligations under Annex III to 2 December 2027 and Annex I to 2 August 2028, while Article 5 prohibitions, Article 4 AI-literacy duties and Article 50 transparency were left exactly where they were. A great deal of published guidance — and a great many vendor decks — still cite the old August 2026 deadline.

Which obligations land on you depends on whether you built the system or deploy a vendor's. Greyrox works that out per workflow, so you're not guessing, and so the answer survives being asked by an auditor.

Integrations

The engine sits in the middle. Your tools plug in around it.

Every integration inherits the same permissioning, audit log and risk status — no matter which vendor it comes from.

Accounting & ERP
Vendor discovery, straight from the books
Reads invoice and ledger line items to flag AI-vendor charges automatically — no access to payment details or bank accounts.
Exact OnlineAFASTwinfield+ more
CRM & collaboration
Where the workflows already run
Surfaces AI-generated notes, fields and automated workflows already running inside your CRM and workspace tools.
SalesforceHubSpotMicrosoft 365+ more
Content & training
Article 50, covered automatically
Checks AI-assisted posts against your transparency policy, and layers in certificate-bearing AI-literacy training for your team.
XLinkedInDocebo+ more
Custom & internal systems
Whatever doesn't have a name here
A lot of what runs day to day is a bespoke internal system, not a household name. Any API-accessible tool can be connected directly.
Custom API
Getting live

Two to three weeks, and you do almost none of it.

01 · Platform demo
A 30-minute call. We show you the handoff — a tool we found, then its identity, permissions, audit log and monthly cost.
30-min call
02 · Discovery
You connect your accounting or expense feed, plus any other systems worth including. We come back with the list of AI already in use across the company.
1–2 days
03 · Governance
Risk status, permissions and audit trail applied to what's already running, before anything new is added.
Same week
04 · Guided adoption
The next workflow, then the one after, each through the same review gate.
Ongoing
About · Est. 2023

Built by people who've lived the integration mess firsthand.

Greyrox is a Dutch company, built and run from Amsterdam, for European companies that want the productivity without the exposure. We build the platform ourselves — our customers run on our own codebase, not on somebody else's engine with our name on it.

Where your data lives, who processes it, and how long we keep it →

Leadership team
Erik Driessen
Founder
Over two decades building and running technology and integration businesses before starting Greyrox.
Arunas Bendoraitis
CTO
Leads the core discovery and risk-status engine that every integration plugs into.
IJSBAANPAD AMSTELVEENSEWEG STADIONPLEIN SCHINKEL OLYMPISCH STADION AMSTERDAM ZUID → 5 MIN GREYROX
Schematic · Amsterdam Zuid
Where we are

Greyrox B.V.
IJsbaanpad 2
1076 CV Amsterdam
The Netherlands

KvK 77254171

Next to the Olympic Stadium, five minutes' walk from Amsterdam Zuid station.

Open in Maps →

Book your free demo.

Thirty minutes. We'll show you the handoff on real screens, answer where your data sits, and tell you plainly if we're not the right fit.