blog > Technology

Data protection and data security at oneVcard - a promise to our customers

Posted by Caro | March 6, 2025

In today's digital world, data protection and data security are of central importance. Companies and individuals are placing increasing importance on protecting your sensitive data. At oneVcard , we take this concern seriously and have implemented comprehensive measures to ensure that your data is processed securely and in compliance with the GDPR.

As of 01.01.2025, Prof. Dr. Eberhard Schott, an expert in information security and data protection, will take over the role of Data Protection Officer at oneVcard. With his support, we will continue to set new standards in the area of data protection and data security.

Our data protection principles - an overview

  • Privacy Policy: Information stored on digital business cards will not be used for profiling or other purposes.
  • Anonymized data collection: To improve our services, we only collect anonymized data that cannot be traced back to individual users.
  • Storage in the EU: All data is stored exclusively on servers within the European Union that meet the highest security standards.
  • Strict access controls: Access to data is strictly regulated and only possible for authorized persons.
  • Development team based in Germany: Our applications are developed and maintained entirely in Germany, without outsourcing to third countries.

Data security at the highest level

  • Data protection guideline: Our database infrastructure is designed for high availability and data security. Backups are created daily and stored for seven days.
  • Two-factor authentication: Access to sensitive systems is protected by two-factor authentication to prevent unauthorized access.
  • Protection against brute force attacks: Systems automatically block suspicious activities to minimize security risks.
  • Compliance guidelines: Our internal guidelines are regularly reviewed and updated in order to always comply with legal requirements.
  • Regular security checks: We conduct continuous penetration tests and audits to identify and fix vulnerabilities.

Our guidelines and policies for maximum data protection

  • Data protection guideline: This defines the principles for handling personal data, including responsibilities, transparency obligations and data security measures. It is regularly reviewed and updated to ensure the highest standards.
  • DLP policy: Our data loss prevention (DLP) policy is designed to protect sensitive information and prevent data loss. This includes role-specific access controls, encryption of data transfers and regular employee training.
  • Internal controls: oneVcard carries out regular audits to ensure compliance with data protection regulations. This includes checking access rights, documenting all processes and carrying out data protection impact assessments for new technologies.

Handling customer data - transparency and security

  • Storage and use: Customer data is only used for clearly defined purposes and is only stored in encrypted form. Data that is not required is securely deleted.
  • Access control: Access is based on the "need-to-know" principle, with strict authentication mechanisms.
  • Training and awareness: Employees and contractors are regularly trained to ensure the secure handling of customer data.

Cooperation with subcontractors and third-party providers

  • Selection criteria: Subcontractors are carefully checked to ensure that they meet the requirements of the GDPR. All partners are based within the EU.
  • Contract management: Before the collaboration begins, a data protection agreement is signed that regulates the responsibilities and measures for the protection of personal data.
  • Regular review: Compliance with data protection requirements by subcontractors is continuously monitored and documented.

Emergency management and SLA standards

  • Security Incident Management: A clearly defined process for handling security incidents ensures a rapid response and minimization of damage. This includes 24/7 on-call services and an escalation plan for serious incidents.
  • Service Level Agreements (SLA): Our SLAs guarantee an annual server availability of 99.5% and a recovery time of a maximum of six hours in the event of a failure. Planned maintenance windows are announced well in advance. Our SLA is part of our oneVcard Teams Enterprise package.
  • Proactive communication: In the event of security-related incidents affecting customers or partners, oneVcard provides prompt and transparent information in accordance with legal requirements.

Our vision - security and data protection as the basis for trust

At oneVcard , we see data protection not just as a legal requirement, but as a central pillar of our corporate strategy. Our aim is to offer customers and partners the highest level of security and transparency.

Whether medium-sized companies or international corporations - our solutions are scalable, innovative and tailored to individual requirements. With our clear focus on data protection, we are sending a strong signal for the future.

Curious? Arrange a demo and experience how oneVcard manages your data securely and efficiently.

Get in touch now and experience data protection in a new way

Would you like to find out more about how oneVcard can support your company with innovative, secure solutions? We are at your disposal!

Start request

Would you like to use digital business cards from oneVcard in your company, but still have questions or would like a customized offer? Then send us an inquiry.

You are interested in:

We have received your request and will get back to you shortly.

Oops. Something went wrong. Please send us a message to support (at) onevcard.de