Security & permissions

Access that fits the process

In cross-team processes, not everyone sees and does the same thing. Bricksta controls access, visibility and ownership at a fine grain — operated in Germany, under German and European law.

Hosting & data sovereignty in the EU

Bricksta is operated in Germany and governed by German and European law — no US jurisdiction, no CLOUD Act, no SCC constructs to a US vendor. For regulated industries and a DACH-heavy customer base, often a deal-breaker.

Member types & roles

Four member types cover the base cases; on top, you can define custom roles with a permission matrix. Groups bundle roles and inherit them organization-wide.

Granular permissions

Individual rights at case, workflow, phase and task level instead of all-or-nothing. Tasks can only be assigned to people actually allowed to execute them.

Control visibility

Categories, templates and individual form fields can be shown or hidden deliberately — per role and group. Those who shouldn't see something don't.

File & field gates

Attachments and individual fields are permission-bound too — for example, file upload only with the matching right.

End-to-end auditability

Every step, assignment and status change is captured in a structured way. The full history of a case stays visible and provable.

Retention & deletion

Retention periods can be set per case type — data is kept as long as it's needed, and no longer.

Part of the product

Security isn't an add-on in Bricksta — it's built into execution. Back to the product overview.

To the product overview