Strict separation between companies
Each company works in its own, walled-off environment. That separation is enforced at every layer of the platform and tested automatically — not just at the front end.
Roles & permissions
Technicians, back office, management and accountants see exactly what fits their role. Modules and data outside their role are not just hidden, but blocked on the server too.
Full audit trail
Important actions — approvals, edits, deletions, logins — are recorded with who, what and when. Approvals by customers in the portal are traceable too.
Strong authentication
Password requirements, two-factor authentication (2FA), secure sessions with automatic refresh and secure, expiring access links for the customer portal.
GDPR-focused design
Data is exportable, access is limited to those who need it and security events are monitored. Privacy is a design principle, not an afterthought.
Secure connections
All traffic is encrypted over HTTPS, with strict browser security headers and protection against common attack patterns such as brute force on login pages.
In practice
What this means for your business
- A technician cannot see the company’s invoices or margins — only their own work.
- A customer can only reach their own quotes and documents, via a secure, expiring access link they can renew themselves.
- If there is ever a dispute about an approval or a change, the answer is in the audit trail — with timestamp and user.
- Administrator actions at platform level are separated from your company environment and are logged as well.
Questions about security or data processing? Email support@solvensystems.nl.