Your data is safe with us
OnDuty meets the highest security standards. EU servers, end-to-end encryption and SOC 2 certification – your sensitive data is in the best hands with us.
EU Hosting
All data is hosted exclusively on servers within the European Union.
Data centers in Frankfurt and Vienna. Fully compliant with GDPR. No data transfer outside the EU.
Encryption
Multi-layer encryption for maximum security of your data.
TLS 1.3 for data transmission. AES-256 encryption at rest. Secure token management.
Application Security
Comprehensive security measures at the application level.
Role-based access control. Optional multi-factor authentication (TOTP). Session timeouts and audit logging. Regular penetration testing.
Backup & Redundancy
Automated backups and redundant systems for maximum availability.
Daily automatic snapshots. 30-day retention plus monthly roll-ups. RPO ≤ 24h, RTO ≤ 4h.
Compliance & Audits
Certified and audited according to international standards.
SOC 2 Type II certification. ISO 27001. Data Processing Agreement (DPA) available on request.
Availability
99.9% guaranteed uptime with DDoS protection.
Auto-scaling infrastructure. Layer 3-7 DDoS mitigation. Real-time monitoring and alerting.
Certifications & Standards
OnDuty meets the strictest security standards in the industry.
ISO 27001
Information SecuritySOC 2 Type II
Service ControlsDSGVO
EU Data ProtectionAVV
Data ProcessingData Security FAQ
Yes, we provide all customers with a GDPR-compliant Data Processing Agreement upon request. Simply contact us via the contact form.
You have the right to access, rectify and delete your data. Send your request to privacy@onduty.tech and we will process it within 30 days.
No. All data is processed and stored exclusively on servers within the European Union. We do not use US cloud providers.
We automatically create daily backups with a 30-day retention period. Additionally, monthly long-term backups are stored.
Questions about data security?
Our team is happy to answer all your questions about security and compliance.