Transparency before trust

Our solutions run in critical environments. That's why we publish measures, reports, and uptime live.

Security

Encryption & Access

  • • Encryption at rest (AES-256) & in transit (TLS 1.2+)
  • • Secrets via KMS, least-privilege IAM
  • • Audit logging for all critical actions

Testing & Monitoring

  • • Automated SAST/DAST & dependency scanning (SBOM)
  • • Quarterly pentests by external parties
  • • Responsible disclosure via security@ignitia.nl

Uptime & Recovery

  • • Uptime ≥ 99.9% (12 months)
  • • RTO ≤ 4 hours · RPO ≤ 1 hour
  • • SLA P1: <1 hour response time

Privacy (GDPR)

Compliance

  • • Data Processing Agreement (DPA) available
  • • Sub-processors list published
  • • DPIA support and data minimization

Data Management

  • • Data retention table per data type
  • • EU data residency options
  • • Automated deletion after retention period

Accessibility (WCAG 2.1 AA)

Audits & Testing

  • • Independent audit at least every 36 months
  • • Regression tests on releases
  • • Automated accessibility checks in CI/CD

Transparency

Open Standards

'Apply or explain' (Forum Standaardisatie) where applicable. API-first, JSON/REST, OIDC/SAML (depending on use case).

Standards we apply:

  • • JSON/REST, OpenAPI
  • • TLS 1.2+, HTTPS, HSTS
  • • DNSSEC/DKIM/DMARC (if email)
  • • OIDC/SAML, OAuth 2.0, JWT
  • • PDF/A for archiving
  • • IPv6 (where applicable)
Read our full policy →

Frameworks

BIO2-aligned work for government contracts (mapping available on request)

ISO/IEC 27001-based controls (in design), including change, access, and incident management

EN 301 549 / WCAG 2.1 AA for accessibility in public context

Status & Updates

Live Status

status.ignitia.nl

Release Notes

Coming soon

Downloads

The following documents are available on request:

  • • DPA (Data Processing Agreement) - NL/EN
  • • SLA (Service Level Agreement) - NL/EN
  • • Accessibility statement
  • • Responsible AI policy
  • • Incident response policy
Request documents →