Anyone who entrusts their administration to us deserves facts instead of reassuring language. This is how things stand — including what we do not have yet.
On servers in the Netherlands, within the EU. You set access per user and per administration, and every action can be traced in a complete audit trail — from report to source document. The servers are hosted by mijn.host, in data centres in Amsterdam and Rotterdam; dedicated servers are located in the Netherlands or France — always within the EU.
Your data can be fully exported at any time, including the audit file your accountant is used to. So you are never dependent on our continued existence to access your own administration. Contractually laid down in our terms of service: if we discontinue the service, everything keeps working for at least 3 more months, you export all your data and we assist with migration free of charge.
Yes. Properties, contracts, contacts and the full administration, including the audit file. You are not locked in anywhere — with us, that is a feature, not a favor.
Four principles, briefly: access is closed by default and opened per role; connections and storage are encrypted; back-ups are not only in place, they are also tested; and everything that happens is logged. The rest is execution.
✓Daily backups with a tested restore procedure — not just that backups exist, but that they work.
✓Data exit: everything exportable, including the audit file.
✓Permissions per user and per administration.
✓Complete audit trail from report to source document.
✓Two-step verification and passkeys; encrypted connections.
✓Logging with alerts on unusual login attempts.
◻Data Processing Agreement available as standard. See the data processing agreement — it forms an integral part of our terms of service; no separate signature is needed.
We are not ISO 27001 certified and do not have a SOC 2 report. We do not claim certifications we do not have or promise processes that have not started. What we do have is listed above, and you may verify it.
If you see a security issue, report it to us directly via the contact details at the bottom of this page. We take every report seriously and respond personally.