Security
The security principles behind S4Ready and how the hosted demonstration is operated.
Access control & RBAC
Role-based access control ensures that stewards, approvers, and admins only see the data and actions they need.
- Role-tailored views for stewards, process owners, and viewers.
- Configurable PII masking presets (Standard/Strict) for sensitive fields outside privileged roles.
- Audit logs for configuration changes and key workflow events.
Data protection & audit
Migration data is treated as sensitive by default, with immutable audit logs and long-term retention options in the product.
- WORM-style audit trails with tamper-evident hashing in supported deployments.
- Configurable retention policies per environment and project.
- Explicit capture of approvals and export-anyway decisions.
Hosting & encryption
S4Ready is operated by Fenikstech on EU infrastructure (netcup), with isolated environments for development, testing, and production.
- TLS for data in transit; encryption at rest provided by the EU hosting platform.
- Segregated environments for dev, test, and production.
- Encrypted backups of platform data are retained within the EU.
Data residency
The hosted demonstration is operated in EU data centres (netcup, Germany) to support GDPR and KVKK expectations.
- All demonstration data is stored and processed within the EU.
- No hosting outside the EU/EEA; access from Türkiye is governed by the EU Standard Contractual Clauses.
- You can request deletion or export of your personal data at any time.
Download security questionnaire
A pre-filled security assessment based on common enterprise requirements. Contact us for additional details.