Your process data stays yours.
ProcessCollector holds your organization’s process knowledge. So we treat it with the care you expect — transparent and without fine print.

Hosted in the EU
Your process data is processed and stored within the European legal space. Two services are the exception: sign-in runs through Clerk in the USA, and error logging through Sentry — there the data sits in a European region but is controlled from the USA. Both are safeguarded by the EU-U.S. Data Privacy Framework and standard contractual clauses; process content goes to neither.
Encrypted
Your data is encrypted in transit and at rest.
Role-based access
Role-based access control within your team. Sign-in runs through Clerk — including multi-factor authentication (MFA). Clerk processes sign-in data in the USA, on the basis of the Data Privacy Framework and standard contractual clauses; the service is listed as a sub-processor in the DPA.
No AI training on your data
We don’t train AI models on your content. Where we use AI via our providers’ APIs, your data is likewise not used for model training under their commercial terms.
GDPR & certification
Processing under the GDPR. Certified to ISO/IEC 27001.
Data processing agreement (DPA)
The data processing agreement (DPA), including the technical and organizational measures, and the current subprocessor list are openly available in aiio GmbH’s Trust Center — no form.
Documents for your IT and security review
The contracting party is aiio GmbH. The core documents are openly available in its Trust Center — no form, no call. The hosting and infrastructure data sheet we’ll send on a short email.
Questions about security?
We’re happy to walk through the specifics with you.