The most sensitive data
a company holds.
Salaries, sick days, bank details, contracts. Anyone moving data like this automatically has to be able to explain where it sits, who sees it and what happens when something goes wrong. This page answers exactly that, without marketing language.
27001
We are a start-up. And that is exactly why our architecture is built so that your data never has to reach us in the first place.
Established vendors carry old systems with them, built at a time when data protection was a footnote. What counts as a security concept there today has usually been retrofitted. We started from nothing, with the GDPR as the starting point rather than an obligation. The fact that HR data does not sit with us permanently is therefore not a setting, it is the architecture itself.
There is something else a large group cannot offer structurally: speed. When your data protection officer raises a requirement, we decide on it the same day, not in the next quarterly committee. And when a question goes deep into the technology, you talk to the people who built the software.
What is at stake for us is far greater. A large vendor survives an incident with a press release. For us it would be the end. That asymmetry is our strongest security mechanism, and it works every day, in every decision.
If your IT team or your data protection officer has questions this page does not answer, write to me directly. Not to support, to me.

