apprenta
Book a demo

SECURITY & PRIVACY

Trust needs
clear answers.

For pastors, finance teams and IT reviewers. Here is how Apprenta protects sensitive giving and contact data — from bank access to data processing.

Explore your questions ↓
EU Hosting
AES-256 Sensitive data fields
HTTPS Encrypted transmission
0 Card numbers at Apprenta

FOR EVERYDAY CHURCH LIFE

Protection you
can understand.

01

Church data stays separate

Each church’s data is kept separate. This separation is enforced in the database.

02

Read-only bank access

Apprenta imports transactions. The bank connection cannot initiate transfers or direct debits.

03

Role-based access

Admin, editor and viewer roles separate management, finance work and read-only access. Sensitive actions are checked on the server.

04

Clear boundaries for AI

AI functions receive the data needed for the task. Donor names are hidden for general finance questions.

ARCHITECTURE

Responsibility.
At every layer.

Access checks take place on the server and in the database. Technical credentials for banking, AI and email services stay on the server; bank credentials are additionally encrypted at rest.

  1. 01

    Transmission

    HTTPS between your device and the server

  2. 02

    Sign-in

    Email confirmation and optional two-factor authentication

  3. 03

    Server

    Sensitive actions and valid sessions are checked

  4. 04

    Database

    Data separated by church

  5. 05

    Sensitive fields

    Bank and donor data encrypted with AES-256

FOR EVERYDAY CHURCH LIFE

The safeguards
in detail.

01

Sign-in & sessions

New accounts confirm their email address. A second factor is optional; sensitive actions require a valid session.

02

Bank & payment data

Technical credentials for the bank connection are stored encrypted. The payment provider handles card numbers and security codes directly.

03

Donor data & communication

Contact information has its own access rules. Bounces, complaints and unsubscribes are considered in communications.

04

AI & generated content

Credentials for AI services stay on the server. Suggested texts and emails are checked for harmful content.

05

GDPR processes

Access, export and deletion are established processes. Roles limit visibility according to team responsibilities.

06

Documents for your review

Apprenta provides documents covering safeguards, data flows and responsibilities for privacy and security questionnaires.

FOR YOUR DUE DILIGENCE

Your questions.
Concrete answers.

Bank access

How we handle your bank connection – in concrete terms, not acronyms.

What can Apprenta actually do on your bank account? +

Read transactions only. Apprenta cannot send transfers, set up direct debits, add payees, or change any account settings. That separation is enforced by your bank itself, not by us.

How does the bank connection technically work?+

Through your bank’s official open-banking interface, brokered by a payment service that is licensed and supervised by the German federal financial regulator. There is no screen scraping and no storage of your bank login credentials at Apprenta. You authorize the connection directly with your bank.

Who can disconnect your bank?+

You – any time, both inside Apprenta and directly in your bank’s online portal. The authorization also expires on a regular schedule by law and must be renewed.

Can Apprenta staff see your transactions?+

No, not in normal operations. Staff do not have routine access to your data. Support cases follow a documented two-person rule and require your consent.

Another question? security@apprenta.de ↗︎

LET’S TAKE A CLOSER LOOK.

Your church.
A clearer perspective.

In 30 minutes, we’ll explore your questions
and show you Apprenta in person.

Book a personal demo ↗︎ No obligation. With room for your questions.