Bare.ID provides the AI platform mAikit with a digitally sovereign, scalable login foundation from the very beginning.

Time to production for Bare.ID
development effort saved on proprietary login infrastructure
User growth in just a few days since go-live, without adjusting the IAM configuration

The German startup QLero is the provider behind mAikit—a "promptless" AI platform for German SMEs. mAikit makes scattered corporate knowledge immediately usable and connects directly to central knowledge sources like SharePoint, Google Drive, Confluence, and Microsoft 365. In doing so, mAikit solves two core problems of current AI development simultaneously: compliance-compliant work with AI and comprehensive integration into the corporate context. Hosting takes place exclusively in Germany and Europe—GDPR-compliant and in accordance with the EU AI Act and EU Data Act.
mAikit defines itself through GDPR, EU AI Act, and EU Data Act compliance, as well as hosting in Germany. This stance had to extend to access management: an IAM provider without comparable data protection guarantees was out of the question. At the same time, QLero was looking for a solution that wasn't over-engineered, but rather lean to start with, while offering room to scale as mAikit's user base grows.
Instead of tying up internal development resources in login and rights management during the startup phase, QLero decided to purchase this foundation. Furthermore, there was a specific product requirement: mAikit grants access via primary and sub-licenses. A primary license holder can add further users and manage their data access independently. This hierarchy had to be reflected in the IAM.
Bare.ID provided QLero with a Keycloak-based IAM platform built on open standards.
Custom branding instead of redirects: The login interface is fully adapted to the mAikit UX. For users, the login feels like a natural part of the platform.
100% German supply chain: Operations, hosting, and data protection standards from Germany – the mAikit product philosophy extends to access management, with no US dependency.
No need for in-house identity development: Instead of building and maintaining their own login and rights management, the QLero team focuses on their core product. Implementation was achieved internally with minimal effort, backed by the IAM expertise of Bare.ID as a dedicated partner.
User management tailored to the license hierarchy: The mAikit-specific structure of master licenses and sub-licenses is mapped within the Bare.ID role and group model – an "admin" identity can create additional user accounts and manage their permissions independently, without requiring intervention from QLero or Bare.ID.
Scaling to new use cases: In addition to end customers, a second use case was added via the reseller portal for partner management – without requiring a new setup. Both run on the same realm, so a partner who is also a customer can be managed with a single identity.
Adding features as needed: The tiered model grows with the project from the pilot phase to the scale phase. Additional security and convenience features, such as multi-factor authentication or advanced self-service options, can be added as mAikit continues to grow.

Consistent brand experience: Custom branding ensures that the login becomes an integral part of the customer experience.
Digital sovereignty without compromise: The mAikit compliance promise now extends to the login. Security and data protection are built into the system from the ground up—GDPR-compliant and free from US dependency.
Focus on the core product: By avoiding the need to develop its own identity solution, a young company can direct its limited development capacity where it creates the most value—into mAikit itself.
Scalable from day one: The tiered model that grows with you and the standards-based architecture support mAikit’s user numbers through the pilot, growth, and scale phases. New customers are onboarded without needing to adjust the IAM configuration.
Bare.ID offers a comprehensive portfolio of features, including: support for social logins, integration of multi-factor authentication, customizable role and permission management.
Thanks to its scalable and flexible architecture, |Bare.ID can be adapted to individual requirements. The solution can be easily extended with custom applications and allows for all desired individual customizations.
The use of open standards like OpenID Connect and the architecture based on the Open Source Framework Keycloak enable | maximum flexibility and prevent vendor lock-in.
Collaboration with the Bare.ID support team is always fast and straightforward. The contacts are available even for complex processes and assist with their expertise.