Legal Ready
Built for European Law.
Don't risk fines. WhistleCore is designed specifically to satisfy the requirements of the EU Whistleblower Directive (2019/1937) and local implementations like HinSchG.
EU Directive 2019/1937
For companies with 50+ employees, an internal reporting channel is mandatory. WhistleCore covers:
- Secure, confidential reporting channel (Art. 9).
- Acknowledgment of receipt within 7 days.
- Diligent follow-up and feedback within 3 months.
Germany: HinSchG
The Hinweisgeberschutzgesetz imposes strict confidentiality requirements.
- Identity protection via Client-Side Encryption.
- GDPR-compliant data minimization (Art. 10).
- Documentation of the procedure (Audit Logs).
France: Loi Sapin II
Specific requirements for data retention and integrity.
- Strict integrity of collected reports.
- 2-Month Data Retention policy tools (auto-deletion).
- CNIL compliant data handling.
General Data Security
Beyond specific laws, we adhere to global best practices for sensitive data.
- Zero-Knowledge Architecture (we can't see data).
- ISO 27001 certified data centers (AWS Frankfurt).
- Full audit trail for all access and modifications.