Trade fairZPE Cologne, 15–17 September · Hall 4.2, Stand K.03ZPE Cologne · Hall 4.2, K.03 Book a slot
HomeSecurity
Data protection & information security

The most sensitive data
a company holds.

Salaries, sick days, bank details, contracts. Anyone moving data like this automatically has to be able to explain where it sits, who sees it and what happens when something goes wrong. This page answers exactly that, without marketing language.

ISO
27001
Certified data centresAudited externally on a regular basis
DE
Hosted in GermanyDeveloped and operated here too
GDPR
Full data processing agreement & measuresAvailable immediately on request
TLS
Encrypted end to endCredentials unreadable even to us
Marc Stratmann, Managing Director of HR-Autopilot GmbH

We are a start-up. And that is exactly why our architecture is built so that your data never has to reach us in the first place.

Established vendors carry old systems with them, built at a time when data protection was a footnote. What counts as a security concept there today has usually been retrofitted. We started from nothing, with the GDPR as the starting point rather than an obligation. The fact that HR data does not sit with us permanently is therefore not a setting, it is the architecture itself.

There is something else a large group cannot offer structurally: speed. When your data protection officer raises a requirement, we decide on it the same day, not in the next quarterly committee. And when a question goes deep into the technology, you talk to the people who built the software.

What is at stake for us is far greater. A large vendor survives an incident with a press release. For us it would be the end. That asymmetry is our strongest security mechanism, and it works every day, in every decision.

If your IT team or your data protection officer has questions this page does not answer, write to me directly. Not to support, to me.

Marc Stratmann Managing Director · hello@hr-autopilot.de
The four questions

What every review
asks first.

We know these questions from every project. So the answers are here before you have to ask.

1Where it is stored

Where does our data sit?

Permanently, nowhere with us. The autopilot receives data, translates it and passes it on, after which it is removed from the platform. The processing takes place in data centres in Germany, certified to ISO 27001.

2Access

Who can see it?

Only whoever you allow. Roles and permissions can be tailored right down to field level. We do not access your HR data ourselves, and in a support case only with your express approval and with everything logged.

3When something fails

What if something goes wrong?

Every execution is logged: which value, from which programme, where to, when. If a step fails, the workflow repeats it automatically. Only if the error persists are you told, with the point where it stopped.

4If we were gone

And what if you no longer exist?

A fair question, and one we are often asked. Because we keep no permanent copy, your data sits in your own systems anyway. We will export your workflows and field mappings for you at any time.

The principle

Like a parcel hub.
With no storage.

HR-Autopilot is not a data store. It receives, translates and passes on, and is empty again afterwards. That is exactly the difference from any solution that mirrors your HR data.

📥ReceiveThe workflow fetches exactly the values it needs, not the whole record.
🔄TranslateField names and formats are adjusted so the target programme understands them.
📤Pass onThe values arrive in the target programme. After that they are removed from the platform.

What is not held by us cannot be lost by us either.

Technical measures

What we can evidence.

Four areas where a review usually goes into detail.

Roles and permissionsTailored down to field level, changes require approval
LoggingEvery execution audit-proof and exportable
High availabilityA redundant environment with automatic retries
Continuous auditsInternal and external, data centres reviewed annually
For the review

Everything your IT team
and works council need.

You do not have to hunt anything down. We supply the documents you can work with internally.

For IT

Security review

  • A data processing agreement under Art. 28 GDPR
  • Technical and organisational measures in detail
  • A list of sub-processors
  • The data centre certificates
  • A description of the data flow and the deletion policy
  • A question catalogue with our answers, pre-filled
Download the question catalogue
For the works council

Co-determination

  • A template works agreement you can edit
  • An overview of which data is processed in which workflow
  • An explanation of the question of performance and conduct monitoring
  • Logging as evidence for co-determination
  • Support through the procedure, we have been through it several times
  • A contact who knows the questions a works council asks
Request the template agreement

“Integrations that used to be maintained by hand now run automatically and securely, an enormous advantage for our HR and IT teams.”

Benedikt Köhler · HR IT Systems Specialist · GEMA · 900 employees
900employees
IT review passed
The next step

Bring your IT team
along to the call.

30 minutes going through the architecture, permissions, logging and deletion policy. Any question we cannot answer on the spot we answer afterwards in writing.

Common questions

What IT and data protection
always ask us

Where is our data stored?
Permanently, nowhere with us. HR-Autopilot processes data only for as long as a workflow is running. After that it is removed from the platform and stays solely in your own systems. The processing itself takes place in data centres in Germany that are certified to ISO 27001.
Who has access to our data?
Only the people you give access to. Roles and permissions can be tailored finely, down to individual fields. Our own employees do not access your HR data; in a support case only with your express approval, and logged.
Is the data protected while it is being transferred?
Yes. Every transfer runs over encrypted connections that meet the current state of the art. Credentials for your programmes are stored encrypted and are not readable in plain text, not even by us.
What happens if there is an outage?
The hosting environment is built for high availability and redundancy. If a connected programme is briefly unreachable, the workflow repeats the step automatically. Only if it keeps failing are you told, along with the point where it stopped.
Are security reviews carried out?
Yes, continuously, both internally and externally. The data centres are audited regularly to ISO 27001, and our own processes are reviewed as well.
Are you certified to ISO 27001 yourselves?
We are currently going through ISO 27001 certification. The data centres where your data is processed are already certified. If your procurement or audit team needs evidence, tell us and we will share the current status of the procedure openly.
What evidence do we get for IT and data protection?
The data processing agreement, the technical and organisational measures, details of sub-processors, the deletion policy and the data centre certificates. The full data protection documentation is not public, and we provide it to you on request.
Does using it require works council agreement?
HR automation can be subject to co-determination, particularly where conduct or performance could be affected. We have supported several works council procedures and provide a template works agreement together with a question catalogue.
What happens to our data if we cancel?
Nothing you could lose. Because we keep no permanent copy, your HR data sits in your own systems anyway. We export your workflows and field mappings on request, and the credentials are deleted.