Skip to main content

SECURITY & GOVERNANCE

Control is a property of the system

Every recorded action on a case is logged with who performed it and when. Access is bounded per company and per role. This page states only what demonstrably exists in the system — and how you can check it yourself during a demo.

SECURITY & GOVERNANCE

What demonstrably exists in the system

Tenant separation
Cases, audit records and API keys carry a company reference in the data model. Access therefore follows the tenant, not the screen.
Roles and rights
The platform distinguishes twelve separate user roles — from customer and provider to accounting, regional management and platform administration — each with its own access scope.
Audit trail
An audit record contains the entity, the action, the actor, the company and the timestamp. The audit trail is written from more than a hundred backend modules, not only on administrative actions.
Key and access management
API keys are stored hashed, carry their own limit per tenant and can be revoked. Multi-factor authentication tokens are hashed, single-use and expire.

AUDIT TRAIL

The course of one case, line by line

Every line traces back to a user, a company and a timestamp. The same view can be opened on any case during the demo.

audit log · case FA-2477

23:47:12case created · intake validated

23:47:31dispatch → provider B · acceptance 41 s

23:52:04status: on site · customer following live

00:13:58invoice created · processed idempotently

00:14:02payout scheduled · case closed ✓

Illustrative interface · simulated operational data

What you can verify yourself during a demo

Instead of showing documentation, we let you try the mechanisms on a working environment. Four checks you can run in a single session:

  1. Open the audit trail of a case and trace every action back to a user and a timestamp.
  2. Switch roles and watch which screens and actions disappear.
  3. Test the tenant boundary: request a case that does not belong to your company.
  4. Follow the export path of a case through to the invoicing output.

Verify it rather than believe it

We walk through your security questionnaire on a working environment, with your IT or procurement team present.

What we cannot demonstrate is not on this page.