Trust · Security controls

Security

A public overview of the technical and organizational controls used to protect product, account and project data.

Publication version18 September 2026 Canonical languageGerman OperatorFairtech Group
ENRIVAQSecuritypublic trust layer
01Encrypt
02Restrict
03Monitor
04Recover
Language note

The German version is the canonical legal version. This English version is provided for convenience. Where legally permissible and the versions differ, the German version prevails.

01

Security controls

Primary Customer Data, databases, files, backups and application data are operated in Germany using Hetzner infrastructure and our own German servers.

Controls include:

  • HTTPS/TLS;
  • HSTS for customer/admin areas;
  • encryption at rest for databases, files and backups;
  • strong password hashing;
  • secret protection;
  • role-based access;
  • least privilege;
  • tenant isolation;
  • privileged-access restrictions;
  • active-session management;
  • administrative/security logs;
  • MFA for privileged roles.

Encrypted backup rotation:

  • 24 hourly;
  • 14 daily;
  • 8 weekly;
  • 3 monthly.

Latest archive integrity is checked and full restore tests are performed at least quarterly.

We monitor availability, critical services, jobs/queues, backup success, errors and security events.

Our incident process is:

Detect → Assess → Contain → Preserve Evidence → Investigate → Remediate → Recover → Notify → Review

ENRIVAQ AI processing uses our own model infrastructure. Customer Data is not sent to external LLM providers for ENRIVAQ AI functionality.

Security contact: info@fairtech.group

Talk to ENRIVAQ

Request a catalog assessment

Tell us enough to make the next step useful for your catalog.