Features that unite security and compliance
Hinweisbox provides all the tools you need for a legally compliant, secure, and efficient whistleblower system.
All features in detail
Every feature is designed to combine the highest security standards with intuitive usability.
Anonymous Reporting
Whistleblowers can submit confidential information without providing personal data. The system ensures that no identifying characteristics are stored or transmitted.
- No registration or login required
- Personal access code for secure follow-up
- File upload for evidence and documents
End-to-End Encryption
All reports, comments, and files are encrypted with AES-256-CBC — both in transit and at rest. Unauthorized parties never have access to the content.
- AES-256-CBC encryption for all data
- Encryption at rest — protected on the server
- Only authorized users can decrypt content
Case Management
Manage incoming reports in a structured and efficient way. From initial review to closure, you maintain a complete overview of every case.
- Status and priority management for each case
- Internal comments and notes for the team
- PDF export for documentation and reporting
- Case assignment to responsible handlers
Role-Based Access
Define precisely who can see and edit which information. Three clearly defined roles ensure maximum control and data security.
- Admin — Full access to system and user management
- Manager — Case handling and communication
- Viewer — Read-only access to assigned cases
Anonymous Communication Channel
Enable a secure dialogue with the whistleblower — without revealing their identity. The access code serves as the sole connection between reporter and handlers.
- Bidirectional communication via access code
- Ask follow-up questions without identity disclosure
- Encrypted messages in real time
Dashboard & Analytics
Keep track of all reports, trends, and processing times. The dashboard delivers the most important metrics at a glance.
- Statistics on reports, statuses, and categories
- Trend analysis and temporal developments
- Overview of latest reports and activities
Automatic Data Deletion
Automatically meet GDPR data minimization requirements. Completed cases are irreversibly deleted after the configurable retention period expires.
- Configurable retention periods per tenant
- GDPR-compliant automated cleanup
- Daily cron job for reliable execution
Complete Audit Trail
Every action in the system is logged — from report creation to deletion. The audit trail ensures full traceability for internal and external audits.
- Logging of all user actions
- Full traceability for compliance audits
- Immutable records for maximum integrity
Ready for legally secure compliance?
Protect your company from fines and meet all legal requirements — in less than 5 minutes.
Start free trial14 days free · No credit card · Ready to use immediately