Hosted in Germany
Audienca Reflection runs on servers of Hetzner Online GmbH (Industriestr. 25, 91710 Gunzenhausen, Germany) in German datacenters. A data processing agreement pursuant to Art. 28 GDPR is in place with Hetzner.
Provider Certifications
Our hosting partner Hetzner is ISO 27001 certified. We align our internal processes with established security frameworks.
Encryption
- In transit: TLS/HTTPS for all connections.
- At rest: Encryption of sensitive data in databases.
- Backups: Regular, encrypted, and geographically distributed backups with periodic restore tests.
Access Control
- Two-factor authentication for administrative access
- Role-based access following the need-to-know principle
- Logging of security-relevant events and administrative actions
AI Models and Data Handling
For AI-based response generation, we use the OpenAI API (OpenAI OpCo, LLC, USA). Data transfer to the USA is based on the EU Standard Contractual Clauses and a Data Processing Addendum. Under OpenAI’s enterprise terms, the submitted API data is not used to train the underlying models.
Security Audits
We conduct regular security audits and penetration tests and keep our systems up to date.
Vulnerability Disclosure
Security issues can be reported confidentially to info@senseaition.com. We follow coordinated disclosure.
GDPR Compliance
Full GDPR compliance via Data Processing Agreement, privacy policy, and technical measures. DPA at /en/orderprocessing, privacy policy at /en/privacy.
Security Questions?
For security or audit requests, contact info@senseaition.com.