Trust & compliance
Security Statement
A high-level overview of how FNI Solutions approaches security, resilience, and trustworthy operations — without exposing sensitive implementation details.
Last updated: 8 July 2026
Security by design
FNI Solutions designs and operates systems with security, resilience, and maintainability from the start. Security is integrated into architecture, delivery, and operations — not added as an afterthought.
Hosting and infrastructure
Services are operated on infrastructure controlled by FNI SRL, with a preference for Belgian and EU hosting. Environments are separated where applicable to reduce blast radius.
Encryption
Data in transit is protected using HTTPS/TLS. Internal controls and encryption practices are applied proportionately to the sensitivity of data and systems.
Monitoring
We use monitoring, logging, and alerting to detect anomalies, support incident response, and maintain service health.
Access control
Access follows least-privilege principles. Administrative access is restricted, authenticated, and reviewed proportionately.
Backup and resilience
Backup and recovery practices support business continuity. Controlled release processes reduce the risk of unintended production impact.
Vulnerability handling
We assess and remediate vulnerabilities as part of our delivery and operations lifecycle. Security researchers may report issues through our Responsible Disclosure policy.
Responsible disclosure
Security reports should be sent to security@fni-solutions.be (or contact@fni-solutions.be if unavailable). See our Responsible Disclosure page for scope and safe reporting rules.
Limits of this statement
This public statement is intentionally high-level. It does not describe specific controls, architectures, or credentials, and does not constitute a warranty or contractual service level unless agreed in writing.