Twoje dane, zabezpieczone w sercu Europy
Suwerenne z założenia: z siedzibą w Luksemburgu, hostowane w UE, a dane Twoich klientów nigdy nie opuszczają jurysdykcji UE. Jesteśmy przejrzyści o naszej drodze bezpieczeństwa i chętnie dzielimy się szczegółami.
Baza luksemburska, europejska siła
Przywództwo Luksemburga
Z siedzibą w Luksemburgu korzystamy z jednych z najsilniejszych przepisów o ochronie danych w Europie, zapewniając dodatkowe warstwy bezpieczeństwa ponad standardowe wymagania RODO.
Infrastruktura UE
Całe przetwarzanie danych odbywa się w Unii Europejskiej przy użyciu centrów danych o wysokiej dostępności w Holandii i Niemczech. Twoje informacje nigdy nie opuszczają jurysdykcji UE.
Jak chronimy Twoje dane
Ochrona danych
Szyfrowanie
Wszystkie dane chronione w tranzycie i w spoczynku przy użyciu standardowego szyfrowania branżowego
Bezpieczeństwo sieci
Egzekwowane polityki bezpieczeństwa i ochrona firewall
Kontrole dostępu
Ścisłe zarządzanie dostępem i monitorowanie
Odporność infrastruktury
Wysoka dostępność
Redundantne centra danych zaprojektowane, aby utrzymać dostępność usługi
Monitorowanie
24/7 monitorowanie systemu z automatycznymi alertami
Backup i odzyskiwanie
Wiele lokalizacji backup z kompleksowymi planami disaster recovery
Aktualny status
Zgodny z RODO
Pełne dostosowanie do wymagań ochrony danych UE
Członek sieci Peppol
Oficjalny uczestnik infrastruktury e-fakturowania UE
Zgodność prawna
Przechowywanie logów i obsługa danych zgodnie z wymaganiami regulacyjnymi
W toku
ISO 27001
Obecnie przeprowadzamy analizę luk jako część naszej drogi certyfikacyjnej
Dyrektywa NIS2
Wstępna ocena zakończona, obecnie wdrażamy polityki i środki wzmacniające bezpieczeństwo zgodnie z unijną dyrektywą o cyberbezpieczeństwie
Wierzymy w przejrzystość naszej drogi bezpieczeństwa. Będziemy aktualizować tę stronę w miarę osiągania nowych kamieni milowych.
Zabezpieczenia, którestosujemy dzisiaj
Publikujemy tylko to, co możemy udokumentować.
Obsługa incydentów
Documented incident response plan
We maintain a written incident response plan that defines severity levels, assigns roles for detection and response, and sets out containment, eradication and recovery steps. It includes communication paths for notifying customers, authorities and CSIRTs.
Continuous automated monitoring
Production systems are monitored continuously rather than on a schedule. Alerting is automated, and runtime security policies detect unexpected behaviour on running workloads as well as at the network edge.
Centralised, tamper-resistant logging
Application access, authentication events, privileged activity, and changes to critical configuration and backup files are logged centrally. Archives are written to immutable, encrypted storage with a defined retention period so that records cannot be altered after the fact.
Independent availability monitoring
Availability is checked from outside our own infrastructure, by a monitoring system we run at a separate provider. If our primary environment fails, the system that notices is not part of it.
Event triage and classification
Suspicious events are assessed against criteria defined in advance to determine whether they are incidents and how severe they are. Logs are correlated as part of that assessment, and events are reclassified when new information emerges.
Security event reporting channel
Anyone can report a suspected security issue to security@invoro.lu. Reports reach the person responsible for incident response directly.
Post-incident review
After recovery we review what happened, identify the root cause, and feed the result back into our security measures rather than closing the incident and moving on.
Zarządzanie dostępem
Single sign-on with multi-factor authentication
Access to production systems and internal tooling goes through a single identity provider that we operate ourselves, with multi-factor authentication required.
Role-based access control
Permissions are granted by role on a least-privilege basis, both for our own staff and for users within a customer account. Access is only granted to users who have been authenticated.
Identities tied to a single person
Every identity belongs to one named individual. Shared accounts are used only where there is no technical alternative, and identity lifecycle changes are logged.
Separate administrative accounts
System administration is performed with accounts dedicated to that purpose and separate credentials. Administrative privileges are individualised and kept as narrow as the task allows.
Sender-constrained API tokens
Application API access uses DPoP (RFC 9449), which binds a token to the client that requested it. A stolen token cannot be replayed from somewhere else.
Access rights are registered and logged
We keep a register of granted access rights, changes to them are authorised and logged, and access is modified or removed when someone changes role or leaves.
Controlled administrative access paths
Administration systems are reachable only over a controlled network path, are separated from application workloads, and require authentication and encryption in their own right.
Kryptografia
Encryption in transit
All connections to our services use TLS. Documents exchanged over the Peppol network use AS4 with signed and encrypted payloads.
Encryption at rest
Databases, persistent volumes and backup archives are encrypted at rest. Selected sensitive fields are additionally encrypted at application level, so they stay protected even with database access.
Centralised secret management
Credentials and keys are held in a dedicated secret management system with audited access and injected into workloads at runtime. Secrets are never stored in source code or container images.
Short-lived database credentials
Database logins are issued dynamically with a limited lifetime rather than being long-lived shared passwords, so a leaked credential expires on its own.
Key management and rotation
Key generation, distribution, storage, rotation, revocation and handling of compromised keys follow a defined approach, and key management activity is logged.
Zarządzanie zasobami
Infrastructure defined as code
Our infrastructure is described in version-controlled configuration and deployed from it. What is running is therefore inventoried by construction, and every change has an author, a review and a history.
Asset classification
Assets are classified so that the strength of the protection applied to them, including cryptographic protection and authentication requirements, matches their sensitivity. Classifications are reviewed periodically.
Container images scanned before release
Every container image is scanned for known vulnerabilities as part of the build. Critical findings stop the release rather than being recorded and shipped.
Provider register
We keep a register of the third-party providers we rely on, recording what each one does, how critical it is, and what data it can reach. The providers that process data for our customers are published on this page.
Kto przetwarza danew Twoim imieniu
Ci dostawcy przetwarzają dane dla naszych klientów biznesowych. O dodaniu lub zmianie dostawcy informujemy z 30-dniowym wyprzedzeniem.
Ostatnia aktualizacja:
| Dostawca | Lokalizacja | Cel |
|---|---|---|
| Hetzner Online GmbH | Germany | Cloud infrastructure hosting and data storage |
| Impossible Cloud GmbH | Germany, storage in the Netherlands | Storage of encrypted backups and log archives |
| Mistral AI SAS | France | Extraction of structured fields from PDF documents you upload or receive |
| Lettermint B.V. | Netherlands | Delivery of transactional email |
Dostawcy, z których korzystamy do własnych celów, takich jak rozliczenia, weryfikacja tożsamości i kontrola sankcji, są wymienieni w naszej Polityce prywatności. Polityka prywatności
Jasne polityki, bez niespodzianek
Co zbieramy
Tylko dane biznesowe niezbędne do przetwarzania Twoich faktur i utrzymania Twojego konta. Bez niepotrzebnych informacji osobistych.
- Dane faktur biznesowych
- Dane logowania do konta
- Logi użytkowania usługi
Jak je chronimy
Twoje dane są szyfrowane, monitorowane i zabezpieczane w wielu lokalizacjach UE. Dostęp jest ściśle kontrolowany i logowany.
- Szyfrowanie w tranzycie i w spoczynku
- Backupy w wielu lokalizacjach
- Monitorowanie dostępu
Twoje prawa
Obowiązują pełne prawa RODO: dostęp, korekta, usunięcie i przenoszenie. Skontaktuj się z nami w dowolnym momencie, aby skorzystać z tych praw.
- Prawa dostępu do danych
- Korekta i usunięcie
- Przenoszenie danych
Zbudowane, aby utrzymać Twój biznes w ruchu
Zaprojektowane z myślą o wysokiej dostępności
Zaprojektowane z myślą o wysokiej dostępności: wiele centrów danych, redundantna infrastruktura i niezależny zewnętrzny monitoring.
Reakcja na incydenty
Profesjonalne procedury reakcji na incydenty są wdrożone, a my staramy się szybko rozwiązywać problemy wpływające na usługę.
Regularne testowanie
Systemy disaster recovery i backup są regularnie testowane, aby zapewnić niezawodność, gdy ich potrzebujesz.
Pytania o bezpieczeństwo? Jesteśmy tu, aby pomóc
Czy potrzebujesz szczegółowej dokumentacji technicznej, wypełnionych kwestionariuszy bezpieczeństwa, czy chcesz omówić konkretne wymagania zgodności - nasz zespół jest gotowy dostarczyć potrzebne informacje.
Kontakt ds. bezpieczeństwa
W sprawie szczegółowej dokumentacji bezpieczeństwa, kwestionariuszy zgodności lub pytań technicznych skontaktuj się bezpośrednio z naszym zespołem bezpieczeństwa.
- Techniczna dokumentacja bezpieczeństwa
- Wypełnianie kwestionariuszy bezpieczeństwa
- Dyskusje o wymaganiach zgodności
Wsparcie ogólne
W sprawie ogólnych pytań o nasze praktyki bezpieczeństwa lub funkcje platformy.
- Ogólne pytania o bezpieczeństwo
- Zapytania o funkcje platformy
- Wskazówki implementacyjne