The new Ditta website is here

Data security

What happens to your data.

Ditta asks for access to your invoices and bank accounts - you're right to expect clarity before saying yes. Here is where your data lives, who can see it, and what Ditta can - and cannot - do.

01

Your data stays in Europe

Ditta runs on Google Cloud, in data centres within the European Union: your data is stored in the EU and processed under the GDPR, Europe's data protection law.

02

Your bank: read-only

Bank connections go through providers regulated under the EU PSD2 directive, such as Fabrick and Salt Edge, and are read-only: Ditta sees balances and transactions, but cannot move money or operate your account.

03

Who sees what

Your data is accessed by you and the people you authorise - your accountant, for example. The Ditta team accesses it only to support you, and only when you ask.

04

Encryption

Data is encrypted in transit and at rest: protected both while it travels between you and Ditta, and while it sits on the servers.

05

AI under your supervision

The AI assistant prepares the work - it doesn't decide for you: on operations with tax or third-party effects, the final word stays with you.

06

Export and deletion

Your data stays yours. You can request an export or full deletion at any time, as provided by the GDPR: just write to dittalabs@pec.it.

No security question is one too many.

If something doesn't add up, or you want more detail than this page gives, write to us - we answer technical questions too.

Request a demo