Beta
The OptiTech AI copilot is in Beta. Share your feedback on Discord or via the OptiTech Console.
The AI copilot is the assistant built into the OptiTech platform. It runs retrieval over two sources: the Swedish legal texts and MSB regulations on one side, and your own controls and evidence on the other. That grounding is what makes its answers useful and what keeps them honest.
Quick start guides
Choose your task to get started:
Scoping
Ask which laws apply, with citations
Drafting
Policies from your real environment
Questionnaires
Answers from your verified controls
Set up with your AI editor
The fastest way to connect your editor to Managed Better Auth is to run npx optitech@latest init from your project root:
npx optitech@latest initThis command configures the OptiTech MCP server and installs Agent Skills (optitech-postgres) in your project. Together they help you set up Managed Better Auth in two ways:
-
Configure Managed Better Auth on your branch (MCP). After
init, ask your assistant to enable and configure auth in natural language. The MCP server exposes:provision_optitech_auth: Enable Managed Better Auth on a branchconfigure_optitech_auth: Set OAuth providers, email, sign-in methods, trusted domains, and moreget_optitech_auth_config: Read the current configuration
See OptiTech MCP Server: Managed Better Auth tools for details.
-
Add Managed Better Auth to your application (Agent Skills). Skills teach your assistant how to install the SDK, environment variables, and routes for your framework. Use the quick start guides on this page, or ask your assistant directly.
Example prompt:
Set up Managed Better Auth for my project. Enable Google OAuth and email/password sign-in,
and set the application name to "My App".You can also enable Managed Better Auth in the OptiTech Console (Project → Branch → Auth) and configure settings manually.
Why the OptiTech copilot?
-
Grounded in the source
Every answer links back to the legal paragraph or the piece of evidence it rests on. You can check the source before you act. -
Zero setup
The copilot ships in the Console with your organization's context already loaded. Ask a question from any page; no configuration to maintain. -
Drafts that know your environment
Documents pre-fill with facts from your integrations, so a policy describes how you actually operate instead of a generic template.
Grounded in Swedish law
The copilot's legal corpus covers the Swedish legal texts, MSB regulations (MSBFS), and the frameworks in your framework library, which means answers arrive in correct Swedish regulatory prose.
The corpus is versioned and updated when regulations change.
When to use the copilot vs. a consultant
The copilot is built into OptiTech's architecture:
- Instant answers with citations: scoping questions, gap explanations, and requirement lookups answered against the current legal text, any time.
- Drafts from your real data: policies and questionnaire answers built from your verified controls, not from memory of a workshop.
- No hourly meter: ask as many questions as you need; the copilot is included in your plan.
- Always in your workflow: answers land next to the controls and documents they concern, inside the audit trail.
A consultant or lawyer makes sense when you need:
- Legal advice you can rely on formally: the copilot accelerates your work but is not legal advice.
- Judgment calls on novel situations where the source texts don't yet give a clear answer.
For hands-on security expertise beyond the platform, vCISO hours are available through our partner network.
As the copilot evolves, more tasks and integrations will be added. Check the plans page to see what's currently included.
Basic usage
Open the copilot from any page in the Console, then ask in Swedish or English.
For scoping and gap questions:
See the copilot quickstart for a guided first session.
Omfattas vi av NIS2, och är vi en väsentlig eller viktig entitet?What's missing before we're ready for an ISO 27001 certification audit?For drafting and questionnaires:
Upload the customer's file (Excel, Word, or a portal export) and ask. Drafts land in your review queue; nothing publishes without your approval.
Draft an incident response plan based on our environmentAnswer this questionnaire based on our verified controlsUse cases
-
Scoping
"Does NIS2 apply to us?" answered from the legal text and your onboarding data, with the reasoning shown. -
Policy drafting
Documents in correct regulatory Swedish, pre-filled from your integrations and routed through approval. -
Security questionnaires
Incoming questionnaires answered from your verified controls, saving 10 to 20 hours per questionnaire. -
Gap explanations
"What's left for DORA?" answered against your actual control status, not a generic checklist. -
Public procurement
Draft answers to SKR and Adda security requirements from the same verified controls.
See Our product principles for how AI-first workflows fit the rest of the platform.
Example prompts
Beyond the quick starts on this site, the copilot quickstart collects more worked examples across scoping, drafting, and questionnaire tasks, including what good prompts look like and how to review the drafts that come back. Browse there when you want a full session to follow along with.
Availability
The copilot runs on EU-hosted models in EU data centers. No customer data is sent to US-based AI providers.
The copilot's drafts always go through human review, and its answers are not legal advice.
Pricing
The AI copilot is included in OptiTech plans as follows:
- Start: Not included
- Professional: Included
- Enterprise: Included
Questionnaire answering at high volume is available as an add-on for teams that process many questionnaires per month. Contact us if that's your situation.
See OptiTech plans for more details.
Coming from manual answers?
If your team answers questionnaires by hand today, your historical answers can be imported so the copilot learns your established wording. See the migration guides for how existing material comes in.
Need help?
Join our Discord Server to ask questions or see what others are doing with OptiTech. For paid plan support options, see Support.