Skip to content

Security

The security principles behind S4Ready and how the hosted demonstration is operated.

Access control & RBAC

Role-based access control ensures that stewards, approvers, and admins only see the data and actions they need.

  • Role-tailored views for stewards, process owners, and viewers.
  • Configurable PII masking presets (Standard/Strict) for sensitive fields outside privileged roles.
  • Audit logs for configuration changes and key workflow events.

Data protection & audit

Migration data is treated as sensitive by default, with immutable audit logs and long-term retention options in the product.

  • WORM-style audit trails with tamper-evident hashing in supported deployments.
  • Configurable retention policies per environment and project.
  • Explicit capture of approvals and export-anyway decisions.

Hosting & encryption

S4Ready is operated by Fenikstech on EU infrastructure (netcup), with isolated environments for development, testing, and production.

  • TLS for data in transit; encryption at rest provided by the EU hosting platform.
  • Segregated environments for dev, test, and production.
  • Encrypted backups of platform data are retained within the EU.

Data residency

The hosted demonstration is operated in EU data centres (netcup, Germany) to support GDPR and KVKK expectations.

  • All demonstration data is stored and processed within the EU.
  • No hosting outside the EU/EEA; access from Türkiye is governed by the EU Standard Contractual Clauses.
  • You can request deletion or export of your personal data at any time.
Download security questionnaire

A pre-filled security assessment based on common enterprise requirements. Contact us for additional details.