Skip to main content

preeco | data protection

GDPR-compliant data protection management for professional documentation and process control. Manage processing activities, data subject requests, data breaches and TOMs centrally – with AI-assisted text support, threshold analysis and TIA for third-country transfers. Multi-tenant and audit-proof.

app.preeco.de

Trusted by these companies – and many more

fischerwerke GmbH & Co. KG TÜV NORD Mobilität Dussmann Group Komm.ONE A.d.ö.R Eckes-Granini Deutschland GmbH dfv Mediengruppe

Processing

Processing Activities and Systems

Create and manage your record of processing activities in accordance with Art. 30 GDPR. All systems, information obligations and processing activities documented centrally.

Processing Activities

Complete documentation in accordance with Art. 30 GDPR with AI-assisted content completion for all mandatory fields. Structured form with legal bases, data categories, recipient details and deletion periods.

Processing Activities on Behalf

Recording and documentation of processing activities carried out on behalf of third parties. Separate overview for clear separation.

Data Processing Systems

Central management of all deployed systems with provider details, data categories and TOM links. Display of assigned processing activities.

Information Obligations

Documentation of information obligations under Art. 13 and 14 GDPR. Automatic revisioning and display of relationships to other documents.

Security Measures and Policies

Manage policies and technical as well as organizational measures centrally. Link TOMs directly with processing activities and contracts.

Policies

Central storage and management of all relevant policies. Linking with other documents and complete activity log for full traceability.

Technical and Organizational Measures

Documentation and versioning of TOMs with AI-assisted content completion and automatic revisioning. Linking with processing activities and contracts – always audit-ready.

Contracts

Contract Management

Manage data processing agreements, consent declarations and joint controller agreements – structured and legally compliant.

Data Processing Agreements

Central management of all DPAs in accordance with Art. 28 GDPR. Templates with all legally required information. Online signature workflow, status tracking, deadline management and automatic revisioning.

Consent Declarations

Creation and documentation of consent declarations. Revision-proof storage of all versions with complete activity log.

Joint Controllership

Documentation of joint controller agreements under Art. 26 GDPR. Online signature workflow and automatic linking with data recipients in processing activities. Automatic revisioning of approved documents.

Training

Training and Qualification

Plan, conduct and document data protection training for your employees. Training participation is automatically tracked and documented.

Training

Creation and management of data protection training courses. Revision-proof documentation of training content, results and participation.

Training Participation

Recording and documentation of all training participation. Overview of the training status of all employees at a glance. Certificates of participation as PDF.

Training Templates

Pre-built training templates for GDPR, AI competency, IT security, and home office – including certificates of participation and part of the package. Customizable to your organization-specific requirements and ready to use immediately.

Data Protection Deletion Concept

Create and manage deletion concepts for all processing activities. Define deletion periods and document compliance in a revision-proof manner.

Deletion Concepts

Structured creation and management of deletion concepts with deletion deadlines, deletion procedures, and responsibilities. Linking with processing activities and data processing systems. The task log documents the actual execution – revision-proof documentation and export as complete evidence for audits and supervisory authorities.

Subject Requests and Incidents

Process data subject requests on time and document data breaches in a structured manner. Deadlines are automatically monitored.

Data Subject Requests

Efficient processing of access requests, deletion requests and other data subject rights under Art. 15–22 GDPR. Respond via email directly from the system.

Data Breaches

Structured documentation of data breaches including notification obligations under Art. 33/34 GDPR, measures and graphical risk mapping.

Audits

Audits and Audit Catalogs

Plan, conduct and document data protection audits in a structured manner. Use pre-built catalogs or create your own questionnaires.

Audit Catalogs

Pre-built and individually customizable questionnaires as a basis for your audits. The preeco Audit Catalog Data Protection is included; BSI IT-Grundschutz, CISIS12 and VdA ISA are available as optional, paid add-ons. Structured, reusable and deployable across tenants.

Audits

Structured execution and revision-proof documentation of data protection audits. Results are traceable at all times and exportable.

Risk Analysis and Impact Assessments

Assess risks systematically and conduct data protection impact assessments in accordance with Art. 35 GDPR in a guided and structured manner.

Data Protection Impact Assessments

Structured execution of DPIAs under Art. 35 GDPR with integrated threshold analysis for risk assessment. Guided process covering all legal requirements. Automatic revisioning of all approved documents.

Risk Analyses

Structured documentation of risks with graphical risk mapping. Recording of risk mitigation measures with responsible persons and deadlines.

Websites

Privacy Policies

Create and maintain privacy policies and notices for your websites. The integrated editor and numerous text modules significantly accelerate the creation process.

Privacy Policies

Integrated editor with automatically numbered sections. Publication via direct link to the current revision or embedding in the website.

AI Regulation

Review the use of AI systems for compliance with the EU AI Act. Document technical and organizational measures for AI applications.

AI Compliance Reviews

Systematic review of deployed AI systems against the requirements of the EU AI Act. Structured form with all relevant checkpoints.

AI Technical and Organizational Measures

Documentation of TOMs specifically for AI applications. Linking with affected systems and processing activities. Automatic revisioning.

Reporting and Activities

Create comprehensive status reports and keep track of all activities. Complete documentation of all changes for maximum transparency.

Activities

Automatic log of all document changes. Full traceability with timestamp, user and action performed – for audits and compliance evidence.

Reports

Status reports with details on all documents and automatically generated table of contents. Process files for individual processing activities can be created.

Features

Collaboration and Task Management

Manage tasks, checklists, files and messages centrally in one place. All participants keep an overview – thanks to the dashboard and follow-ups.

Tasks

Create and assign tasks directly within documents. The dashboard shows all open tasks at a glance. Email notifications ensure timely action.

Checklists

Multiple-choice checklists for quality assurance. Use template checklists or create your own. Results exportable as PDF or DOCX.

File Storage

Central upload and structured storage of documents. Tags and nestable folders simplify organization. Files optionally shareable via public URL.

Contacts

Central creation and maintenance of all relevant contacts via a structured form. Filterable, tabular overview with links to processing activities, contracts and other documents. Including activity log, tasks and follow-ups.

Messages

Internal communication directly in the system. Attach files, email notifications for new messages. Complete tracking of all communication.

Surveys

Create your own surveys with various question types. Evaluation and download as PDF or DOCX. Usable independently or linked to documents.

Follow-ups

Scheduled reminders for all due tasks. Observers are automatically notified. No deadline is missed.

AI Functions

AI-assisted enrichment and revision of content in processing activities, processing activities on behalf, policies, TOMs, incidents and privacy statements – including threshold analysis for processing activities. Multi-edit in overviews for efficient work. OpenAI-compatible LLM provider integration with flexible provider selection.

DeepL Integration

Automatic translation of document content into all 25 languages via the DeepL API – optional add-on, used with your own DeepL API key. Professional translation quality for international reporting.

Switch Product View

Data protection and information security on one shared platform: with both products licensed, switch your working environment between the data protection and information security views with a single toggle.

Highlights

More Highlights

In addition to the core features, preeco | data protection offers a range of additional features that noticeably simplify your daily data protection work – from automated text support and embeddable forms to direct publication of legally relevant content.

Text Modules

Numerous relevant, legally reviewed text modules included. Create, maintain and share your own modules for all organizations or selectively.

Form Widgets

Configurable web forms for website or intranet – for data subject requests, data breach reports, custom message forms, consent declarations and DPA signing. Easy to embed via HTML snippet, entries are captured directly in the system.

Publication Features

Publish information obligations and privacy policies directly from the system – via direct link to the current revision or embedded on the website. Always up to date, always revision-proof.

Global Search & Customizable Overviews

System-wide search, accessible from any view via the ⌘/Ctrl + K keyboard shortcut. Overview tables can be customized individually – column order and width are saved per view.

Custom API Endpoints

The application is designed as a closed system without a public REST API. On the Private Cloud and On-Premises hosting variants, custom API endpoints are developed and provided for your integration scenarios.

Designed for Accessibility

Keyboard operability, semantically structured HTML, sufficient contrast, scalable font sizes and alternative texts for graphics. Accessibility is continuously reviewed and improved.

Success Story

fischerwerke relies on preeco | data protection

Referenz

By using preeco | data protection, we were able to quickly achieve significantly better data quality while also considerably increasing the efficiency with which the companies and departments of the fischer Group collaborate on data protection.
fischerwerke GmbH & Co. KG

Jonathan Haist

IT Security Manager

fischerwerke GmbH & Co. KG

Choose Your Hosting Option

Flexible, secure and tailored to your needs — choose the right hosting solution.

Cloud and Private Cloud options are hosted in ISO 27001-certified data centers of Hetzner Online GmbH in Germany (Nuremberg, Falkenstein). The data centers run on 100% green electricity. Daily backups with 7-day retention, AES-256 encrypted as password-protected archives, and daily off-site backup at the Hetzner Falkenstein data center. Guaranteed availability: 99.0% per calendar month. All data transmissions are continuously SSL/TLS-encrypted.

Get Started Now

In 30 minutes, we'll show you how preeco | data protection simplifies your compliance routine.

FAQ

Frequently Asked Questions

You will receive your login credentials by email after registration. Go to the login page and enter your email address and password. If you have any issues, contact our support at support@preeco.de or +49 731 280 651 0.

Navigate to the "Processing Activities" module and click "New Processing Activity". The wizard guides you step by step through all required fields. Text modules and templates significantly simplify documentation. A detailed guide can be found in our user manual.

Yes, preeco | data protection is multi-tenant capable. As an external data protection officer, you can manage multiple tenants centrally in one system. Each tenant has its own settings and documents. Switching between tenants is done with a single click. More information can be found in the user manual in the "Tenant Management" section.

Data subject requests can be recorded and processed via the "Data Subject Requests" module. The system automatically monitors statutory deadlines and reminds you in time. The processing workflow is fully documented. Response templates speed up the handling process.

The "Online Training" module enables the delivery of online training courses directly in preeco | data protection. Training courses consist of learning units (image or video content) and exam questions (multiple-choice, single-choice) with a freely adjustable minimum score for certification. You can use existing templates or create your own training courses.

Included training templates cover GDPR training for companies and public administration, AI competency training, and IT security awareness for employees, among others. Participants can be added manually or imported via XLSX. After passing the exam, they receive a certificate of participation as PDF. You can view the training progress of all participants at any time in the tabular overview.