Features

User Features

  • Multi-user system with customizable user roles (whistleblower, recipient, administrator)

  • Entirely manageable from a web administration interface

  • Support for more than 60 languages with support for Right-to-Left (RTL)

  • Let whistleblowers decide if and when to confidentially declare their identity

  • Exchange multimedia files with whistleblower

  • Chat with Whistleblower to discuss the report

  • Unique 16-digit receipt for the whistleblower to log back in anonymously

  • Simple recipient interface for receiving and analyzing reports

  • Support for the categorization of the reports with labels

  • Support for the user search of reports

  • Support for assigning and creating case management statuses

  • Customizable look and feel (logo, colour, styles, font, text)

  • Define multiple reporting channels/contexts (e.g. per-topic, per-department)

  • Manage multiple whistleblowing sites from a single dashboard

  • Advanced questionnaire builder

  • Whistleblowing system statistics

Security Features

  • Full data encryption of whistleblower reports and recipient communication

  • Digital anonymity support with Tor integration

  • Built-in HTTPS support with TLS 1.3 standard (SSLabs A+ rating)

  • Automatic free digital certificate enrollment (Let’s Encrypt)

  • Multiple penetration tests with full public reports

  • Conform to industry standards and best practices for application security (OWASP)

  • Two-Factor authentication (2FA) support compliant with standard TOTP RFC 6238

  • Integrated network sandboxing with iptables

  • Integrated application sandboxing with AppArmor

  • Complete protection against automated submissions (spam prevention)

  • Subject to continuous peer-review and periodic security audits

  • PGP support for encrypted email notifications

  • Does not leave traces in browser cache

Technical Features

  • Multi-site support enabling to run multiple virtual site on the same setup

  • Responsive UX made with Boostrap CSS Framework

  • Built-in Accessibility Support with WAI-ARIA compliance

  • Automated Software Quality Measurement and Continuous Integration Testing

  • Long-Term Support plan (LTS)

  • Built with lightweight framework technologies (AngularJS and Python Twisted)

  • Embedded database - SQLite (optional support for other databases)

  • Automatic setup of Tor Onion Services Version 3

  • Integrated backup support

  • Support for self-service signup for whistleblowing SaaS service setup

  • Support for Linux operating system (Debian/Ubuntu)

  • Deb Packaging with repository for update/upgrades

  • Fully self-contained application (no web or application servers needed)

  • Easy integration of the platform with existing websites and intranets

  • HTTP/2 support

  • Rest API

  • Provisioning API