Four clear roles, restriction to locations, encrypted personnel data and a separate database for every company.
Personnel data is among the most sensitive data a company holds: AHV number, bank details, religion, residence permit, dismissals, warnings. The Data Protection Act requires that only those who need it for their work can see it.
HREasy implements this with fixed roles, restriction to locations and organisational units, and encrypted storage. Every company has its own database, and every decryption of a sensitive field is logged. In the settings you also set up company details, letterhead, email sending and team notifications.
The admin can do everything, including subscription, settings and assigning roles. The HR manager has full HR access including salaries and sensitive data, but no settings and no billing. The HR administrator maintains employees, hours, absences and cases, but sees no salaries, no AHV number and no religion. Employees only see themselves.
You assign the role in the personnel record under «Mobile App / Portal Zugang» (mobile app / portal access). The company owner is always admin.
In the «Team und Benachrichtigungen» (team & notifications) tab you decide who receives emails and about what: submitted hours, time corrections, absence requests and approvals, submitted expenses, onboarding, retirements, signed contracts.
That way every notification reaches the right person instead of everyone getting everything.
So that emails to employees and applicants come from your own address, you set up your domain as the sender in the «E-Mail» tab. HREasy shows the DNS records required and has the signing verified.
After a test email you can see in the event log what happened to it. Only what the sending service explicitly reports as delivered counts as delivered.
In the employee portal, employees set up two-factor authentication with an authenticator app under «Stammdaten» (master data): scan the QR code, confirm the code, done. They also receive backup codes that are shown only once.
Logging in is additionally protected against guessing: the number of failed attempts is limited, and the response time does not reveal whether an account exists.
Using an AHV number as an example: from saving to display.
The AHV number is stored encrypted with AES-256-GCM in your company’s database.
On retrieval, the server checks the role and location restriction of the person making the request.
Only if the person is authorised is the field decrypted and displayed.
Who, what, when and from which address: every access is recorded.
Every day a run checks for an unusual number of accesses and raises the alarm.
No module stands alone. What you enter here flows automatically to wherever it is needed, without entering it twice.
Admin, HR manager, HR administrator and employee, with clearly separated rights.
HR administrators maintain staff, hours and absences but see no salaries and no sensitive data.
Roles can be restricted to a location or an organisational unit, effective from the next request.
Sensitive personnel fields such as AHV number, IBAN, address or religion, as well as all events in the personnel file, are encrypted with AES-256-GCM.
Every company has its own database; its access credentials are themselves stored encrypted.
Every decryption of sensitive fields is logged, and a daily run reports anomalies by email.
Employees secure their access with an authenticator app and backup codes.
Limited failed attempts and constant response time, so accounts cannot be guessed.
The interface is available in German, English, French and Italian.
HREasy runs on servers in Europe, connected via TLS. Every company has its own Postgres database. Files are stored in a separate object store.
For AI features, HREasy uses language models from Anthropic (Claude). The data transmitted is not used for training, and particularly sensitive details such as religion, AHV number or IBAN never go to the language model.
When the HR Copilot needs personnel data, it requests it for a stated purpose, such as «holidays» or «contract», and only receives the fields for that purpose. If a document needs an AHV number, the server inserts it afterwards via a placeholder.
If the user wants to see complete data, HREasy displays it directly from the system without it reaching the language model.
Admins and HR managers. HR administrators and employees do not see other people’s salaries.
Yes. HR managers and HR administrators can be restricted to a location or an organisational unit. This applies in lists, dashboard, reporting and the Copilot.
Sensitive personnel fields and events are encrypted with AES-256-GCM, every company has its own database, and every decryption of sensitive fields is logged.
In Europe. The connection is encrypted with TLS.
Yes, in the employee portal, with an authenticator app and backup codes.
No. The AI provider Anthropic does not use the transmitted data for training, and particularly sensitive details are not transmitted at all.
Set up in 5 minutes, no HR knowledge needed. The agent takes care of the rest.
Request trial access now