HEINI · Enterprise · group & holdings
Your ERP stays authoritative. Work across sites becomes reviewable.
Your stack stays. HEINI connects the sites.
IT leadership opens the federation board. Munich runs SAP, Hamburg Odoo, Vienna the grown legacy stack — each site in its own single-tenant on Hetzner in Falkenstein. HEINI sits at each one, mixes nothing.
- Proprietary federation
- SSO
- SLA (Annex D)
- DPA
HEINI in your business
Your ERP stays authoritative. Work across sites becomes reviewable.
One case connects the sites, existing systems and responsible decision makers.
One site needs stock recorded at another site.
Nothing has been sent or changed yet.
- Required contextERP stock with timestamp · site ownership · transfer rule
Stock freshness and approval from the supplying site remain open.
The transfer option and its consequences are presented together for review.
Nothing has been sent or changed yet.
What HEINI takes off your desk
What slows groups down
- 01
Heterogeneous ERP landscape
Every subsidiary a different system — SAP here, Odoo there, legacy beside it. Consolidation today means Excel, emails, weeks.
- 02
Audit & compliance burden
GoBD, GDPR, ESPR, supply-chain law — documentation across sites, by hand. Auditors want receipts, not slide decks.
- 03
Data residency & IT security
Operational data in Germany, DPA on request. The data protection officer needs clear answers — SSO, tenant separation, AI sub-processors in the DPA, not “we will see".
- 04
Consolidation without overview
The holding needs figures and cases from all subsidiaries — without disempowering sites and without mixing data.
How the work moves forward
How HEINI enters your group
One case connects the sites, existing systems and responsible decision makers.
- 01
Clarify DPA & SSO
Architecture check in 30 minutes — privacy, identity management, site list.
- 02
Site by site
Activate adapters, connect ERP, set colleague rights — each subsidiary its own stack.
- 03
Activate federation
Separate data spaces, one approval layer — consolidation prepared, never mixed.
What is already included
What enterprise teams need in depth.
01Federation
Multi-site for holdings: heterogeneous ERPs, separate data spaces, consolidation on approval.
02SSO & RBAC
Rights 1:1 from your identity management — no parallel role system per subsidiary.
03Single-tenant per site
Own compose stack, own encryption — no shared infrastructure.
04Custom adapters
SAP, Odoo, Lexware, bespoke systems — documented, no vendor favoured.
05Audit-proof log
Every step with time and reason — PDF for tax auditors and external audit.
06Quarterly audit packs
Reviewer mode for accountants and internal audit — exportable across sites.
Trust · human decision
Single-tenant on Hetzner in Falkenstein — operational data in Germany. No shared data space.
Single-tenant on Hetzner in Falkenstein, ISO 27001:2022 and BSI C5 Type 2, own encryption per account. Every step in the audit-proof log — approval principle in code, not only in the contract.
- Servers: Falkenstein
- ISO 27001:2022 · BSI C5
- DPA on request
- Still to clarify
- Stock freshness and approval from the supplying site remain open.
- Prepared for review
- The transfer option and its consequences are presented together for review.
FAQ
FAQ
What does the enterprise tier include?
150,000 actions per month, SSO, SLA (Annex D), DPA, federation for subsidiaries, custom adapters, quarterly audit and a dedicated contact.
What does enterprise cost?
On request — scope depends on sites, adapters and SLA. We clarify your requirements in the demo; list price from €12,900 net per month as orientation.
Must we unify our ERPs?
No. Heterogeneous ERP landscapes are the norm — HEINI connects via adapters, it does not replace.
Where is the data?
Operational data on Hetzner servers in Falkenstein, Germany — single-tenant. For AI inference on the SaaS platform, EU sub-processors with US parent companies may apply per the DPA; the marketing website (Umami) has no third-country transfer in normal operation.
How does federation work?
Each site has its own stack and data space. Federation connects them in a controlled way — roles see only their own, consolidation runs via approval.
How does SSO integration work?
HEINI takes rights 1:1 from your existing identity management — SAML/OIDC by agreement in the enterprise rollout.
Do we get a DPA?
Yes, on request — including sub-processor list and technical annex on hosting and encryption.
How long does rollout take?
The first site often in a few days. Federation and custom adapters scale site by site — no big-bang project.
Your business. Your case.
Let’s talk about your group.
30 minutes on your structure — Daniel Heinen leads the demo himself.
See HEINI on your own case