GDPR / KVKK
How S4Ready and the hosted demonstration relate to European (GDPR) and Turkish (KVKK) data-protection obligations.
Where processing happens
The hosted demonstration at s4ready.fenikstech.ai runs on synthetic sample data and does not accept uploads of your real data. For the limited personal data it does collect — your account, sign-in and security logs, and any contact-form or support messages — Fenikstech is the data controller.
Any processing of your own SAP or master data happens only in the customer-managed installation that you run inside your own network. There you remain the data controller, and Fenikstech does not host or access that data by default.
Product capabilities
Role-based access control, configurable masking of sensitive fields (VAT/TIN, IBAN, bank details), and detailed audit logs are built in to support privacy by design in the customer-managed product.
Because the customer-managed installation runs in your own environment, your data stays with you, so you can meet residency and erasure requirements directly. The hosted demonstration itself holds only the limited controller-side data described above.
This page is informational and not legal advice. Work with your legal and security teams to assess how S4Ready fits your GDPR/KVKK posture.
International transfers & EU Representative
The demonstration's personal data is hosted in the EU (netcup, Germany). Fenikstech is established in Türkiye, a country without an EU adequacy decision, so access from Türkiye is an international transfer covered by the EU Standard Contractual Clauses (SCCs).
EU Representative details will be published on the Privacy and Imprint pages once appointed.