Skip to content
Microsoft 365 integrated
GDPR & ISO 27001 compliant
Instantly ready to use
230,000+ users
Microsoft 365 integrated
GDPR & ISO 27001 compliant
Instantly ready to use
230,000+ users
Security & GDPR

Security with absentify

absentify is committed to the security and privacy of our customers' data.

Security | absentify

100% GDPR Compliant

We prioritize protecting your data. absentify ensures compliance with GDPR regulations, safeguarding your data and respecting the rights of individuals within the EU.

Learn more about this

Data Protection

Robust security measures to protect your information. We adhere to stringent industry standards to ensure your data is always secure.

Data Protection
ISO 27001 Certified

ISO 27001 Certified

Our commitment to information security is demonstrated through compliance with this globally recognized standard.

Learn more about certifications
Microsoft 365 App Certified

Microsoft 365 App Certified

We align with Microsoft's rigorous standards to provide a trusted and secure application experience.

Data at rest

Data at rest

All data is encrypted at rest using AES-256. Keys are managed via Azure Key Vault with HSM-backed encryption.

Data in transit

Data in transit

Data transmitted over potentially insecure networks is encrypted using TLS 1.2 or higher.

Data backup

Data backup

We use a point-in-time approach for data backups, which are securely stored for 14 days. Production backups are geo-redundantly replicated to an EU paired region.

Reliable data protection

Security Controls

absentify implements best practices and operational controls to ensure the confidentiality and safety of your data:

Infrastructure Security

  • Unique production database authentication enforced

  • Encryption key access restricted

  • Access control procedures established

Organizational Security

  • Asset disposal procedures utilized

  • Production inventory maintained

  • Portable media encrypted

Product Security

  • Data encryption utilized

  • Control self-assessments conducted

  • Penetration testing performed

Internal Security Procedures

  • Continuity and disaster recovery plans established

  • Continuity and disaster recovery plans tested

  • Configuration management system implemented

Data and Privacy

  • Data retention procedures established

  • Customer data deleted upon leaving

  • Data classification policy established

Responsible Disclosure

We value the inputs from the community to help us detect vulnerabilities. If you believe you have found a security vulnerability, please follow the instructions to report it.

Questions?

Frequently Asked Questions

Backups are securely stored and encrypted for 14 days. Production backups are additionally geo-redundantly replicated to an EU paired region. Point-in-time recovery is available with a granularity of 5 minutes.

Data is immediately deleted from active systems. Backups remain securely encrypted for 14 days and are then permanently erased.

Yes, we fully comply with GDPR requirements. Customers can sign a Data Processing Agreement (DPA), and we offer transparent options for data control and deletion. All data is exclusively processed and stored in the EU (Ireland).

absentify protects your data with ISO 27001-certified management systems, Microsoft 365 App Certification, and advanced encryption technologies (AES-256 for data at rest, TLS 1.2+ for data in transit). All backend services are connected via Private Endpoints within an isolated network, protected by a Web Application Firewall and continuous threat detection via Microsoft Defender.

All customer data is processed and stored in the Microsoft Azure North Europe region (Ireland). Geo-redundant backups are replicated exclusively within the EU. No data processing takes place outside the European Economic Area.

Access to production data is restricted exclusively to top management. Developers have no direct access to production databases. All access attempts are logged and regularly reviewed. Multi-factor authentication is required for all administrative access.

Yes, penetration tests are performed at least annually by independent third parties. Additionally, automated vulnerability scans are conducted monthly, along with continuous security monitoring via Microsoft Defender for Cloud.

Support

Do you still have unanswered questions or do you have special requirements?

Your vacation and absence planning, fully integrated with Microsoft 365

Start now for free
Unlimited users
DashboardLeave TypesProfile
Microsoft Azure integrationSlack integrationMicrosoft Outlook integrationMicrosoft Teams integrationGoogle Calendar integrationPersonio integrationJira integration

100% Microsoft 365 integrated

directly in Teams, Outlook & Entra ID

GDPR & ISO 27001 certified

certified safety

Rollout in hours, not weeks

without IT implementation

230,000+ active users worldwide

for HR, IT, management and more

© 2026 absentify® - absentify GmbH, All rights reserved.