Skip to content

Security

Strong protection for your HR data

eKadr is designed for a company’s most sensitive data: access is closed by default, permissions are checked on every request, and data can be kept inside your own network.

Principles

Protection at every level

Closed by default

Every operation requires authorization. Public actions — sign-in, account recovery, the job listings page — are listed explicitly.

Granular permissions

More than 60 permissions in 15 categories, 5 system roles and any number of custom ones. Permission changes take effect immediately.

Data visibility

The whole group, your own organization or your own department: a profile from another organization can’t be opened, even with a direct link.

Two-factor sign-in

One-time TOTP codes and 10 backup codes. Signing in with a code can be made mandatory.

Credential protection

Passwords are stored with BCrypt, tokens and access links only as hashes, and sign-in attempts are limited.

Traceability

Who created or changed a record and when, a log of key events and the approval history of HR orders.

In detail

What exactly is protected

Sign-in and sessions

  • Access tokens last 15 minutes, and refresh tokens are rotated on every use
  • A reused token is rejected
  • Changing a password ends all of the user’s sessions
  • A blocked employee can’t extend their access
  • Temporary lockout after a series of failed sign-in attempts

Permissions and roles

  • Each type of HR order and contract is protected by its own permission
  • Recruiting has separate permissions for viewing, managing and evaluating candidates
  • System roles can’t be deleted or renamed
  • A new account gets a role based on the position: leadership, department head or employee
  • The interface hides sections the user has no permissions for
  • Company chat works only within the user’s own organization

Data and secrets

  • Integration keys, SMS and Telegram tokens, two-factor secrets and terminal passwords are encrypted
  • Secrets are shown only in masked form in settings
  • Personal documents are visible only to the employee and the HR team
  • Files in chat, the portal and learning are checked based on their actual content

Network and browser

  • HTTPS in the cloud version with automatic certificate issuance
  • Domain allowlist (CORS)
  • Browser security headers: HSTS, no embedding on third-party sites, nosniff
  • Technical error details are not shown to users

Audit

  • Every record stores who created and changed it and when
  • Key events — HR orders, documents, org structure, contracts, KPIs, security policies — are written to a log
  • The approval history of HR orders is visible in the interface
  • Outgoing SMS messages and emails are logged

Mobile app

  • Tokens are kept in secure OS storage: Keychain and Keystore
  • Signing out of the app revokes the token on the server
  • Manager screens stay closed without the right permissions, even via a direct link
  • Widgets receive data through a separate read-only token, which is revoked on sign-out
  • Location is used only while the app is open

Deployment

You decide where your data is stored

eKadr Cloud

A dedicated installation for your organization on an ekadr.com subdomain.

  • A separate database for each customer
  • HTTPS and updates from DonishSoft
  • No hardware of your own needed

Your server

Installation inside your organization’s network — for the public sector and companies with strict requirements.

  • Linux or Windows Server
  • Docker or IIS with ready-made scripts
  • Outbound traffic: only a license check with no personal data

AI and data

AI without data leaks

AI features connect to the model you choose.

  • By default, AI features for HR run on DonishSoft’s own model on our own hardware
  • The model can be replaced with one inside your network through an OpenAI-compatible interface
  • The assistant receives only the query and the matches found, not the full staff list
  • Changes to data are saved only after a person confirms them
  • Model access keys are stored encrypted

License

A license that doesn’t hold your data hostage

Digital signature

The license is cryptographically signed and verified locally.

Up to 30 days offline

The system rides out a temporary loss of connection to the license server.

Data is not deleted

If the license expires, your data is kept and changes are paused until renewal.

No personal data

Only technical information is sent to the license server.

Frequently asked questions

What does DonishSoft see when eKadr is installed on our server?

Only the technical information needed to check the license: the license and installation IDs, the version and the number of active employees. No personal data is transmitted.

Is personal data encrypted?

Personal data is protected by access permissions and stored in a PostgreSQL database — in eKadr Cloud or on your server. Passwords, tokens, integration secrets and two-factor secrets are stored as hashes or in encrypted form. Disk and database encryption is configured at the infrastructure level.

Can two-factor sign-in be made mandatory?

Yes, through a security policy for the web app. Note that the mobile app does not support two-factor sign-in yet.

Is sign-in via Active Directory or SSO available?

Not at the moment. Users sign in with an email or phone number and a password, and two-factor authentication can be enabled.

How are backups handled?

According to the operating procedures: in eKadr Cloud, by DonishSoft; on your own server, by your IT team. Data and files are kept on persistent volumes and are not lost during updates.

See eKadr in action with your own use cases

We’ll run a demo built around your scenarios, answer questions from your HR and IT teams, and prepare a commercial proposal.