SECURITY & GOVERNANCE
Control is a property of the system
Every recorded action on a case is logged with who performed it and when. Access is bounded per company and per role. This page states only what demonstrably exists in the system — and how you can check it yourself during a demo.
SECURITY & GOVERNANCE
What demonstrably exists in the system
- Tenant separation
- Cases, audit records and API keys carry a company reference in the data model. Access therefore follows the tenant, not the screen.
- Roles and rights
- The platform distinguishes twelve separate user roles — from customer and provider to accounting, regional management and platform administration — each with its own access scope.
- Audit trail
- An audit record contains the entity, the action, the actor, the company and the timestamp. The audit trail is written from more than a hundred backend modules, not only on administrative actions.
- Key and access management
- API keys are stored hashed, carry their own limit per tenant and can be revoked. Multi-factor authentication tokens are hashed, single-use and expire.
AUDIT TRAIL
The course of one case, line by line
Every line traces back to a user, a company and a timestamp. The same view can be opened on any case during the demo.
audit log · case FA-2477
23:47:12case created · intake validated
23:47:31dispatch → provider B · acceptance 41 s
23:52:04status: on site · customer following live
00:13:58invoice created · processed idempotently
00:14:02payout scheduled · case closed ✓
What you can verify yourself during a demo
Instead of showing documentation, we let you try the mechanisms on a working environment. Four checks you can run in a single session:
- Open the audit trail of a case and trace every action back to a user and a timestamp.
- Switch roles and watch which screens and actions disappear.
- Test the tenant boundary: request a case that does not belong to your company.
- Follow the export path of a case through to the invoicing output.
Verify it rather than believe it
We walk through your security questionnaire on a working environment, with your IT or procurement team present.
What we cannot demonstrate is not on this page.