EU AI Act · IT & Engineering
EU AI Act for IT teams and CTOs
SimpleAct fits into existing IT landscapes: API access, webhooks, OpenAPI documentation, SSO and hosting in Germany. Tasks can flow on into Jira, Teams or ServiceNow.
Typical requirements from IT teams
- Compliance workflows need to integrate with existing tools (Jira, Teams, ServiceNow)
- Audit logs must be technically immutable and exportable
- Hosting requirements: Germany, GDPR, no US cloud provider
- SSO and role-based access control as prerequisites for enterprise rollout
- IT security asks about penetration tests, TLS versions, and encryption at rest
What this looks like in practice
The security team evaluates an AI compliance tool against three requirements: SSO via the existing identity provider, a Jira connection for audit playbook tasks, data residency in Germany. SimpleAct covers all three: SSO from Professional, Jira/Teams/ServiceNow as integration targets with OpenAPI documentation, hosted at Hetzner in Nuremberg.
What SimpleAct delivers for IT teams
- API, webhooks and OpenAPI
- Full REST API with API keys, webhook endpoints, and OpenAPI documentation. Your own systems can read, write, and synchronise AI inventory data.
- Integration targets: Jira, Teams, ServiceNow
- Jira, Microsoft Teams, and ServiceNow are supported as integration targets. Via API, webhooks, and ingestion endpoints, incidents and tasks can be routed into your existing workflows.
- Security architecture
- RBAC, 2FA (TOTP), multi-tenancy isolation, session invalidation, TLS 1.2+, encryption at rest. Hosted entirely at Hetzner (DE).
- SSO and enterprise auth
- SAML/LDAP and SSO from Professional, SCIM provisioning on the Enterprise plan. Simple integration with existing identity providers – no separate user management.
What your IT team gets
- REST API with API keys and OpenAPI documentation
- Webhook endpoints for event-driven integrations
- Jira, Teams, and ServiceNow as integration targets (via API/webhooks)
- SSO/SAML and LDAP from Professional
- RBAC with granular role assignment per tenant
- TLS 1.2+, encryption at rest, 2FA (TOTP), session invalidation
Frequently asked questions from IT teams
Is there public API documentation?
Yes. SimpleAct offers OpenAPI documentation, ingestion endpoints, and webhook support. Details in the Enterprise plan – get in touch.
Where does the system run? Is on-premise possible?
SimpleAct runs as SaaS entirely at Hetzner (Nuremberg) – application and database within Germany/EU. On-premise is not currently available; all data stays in the EU.
How is high availability handled?
99.5% availability target per SLA, automated daily PostgreSQL backups at Hetzner, and defined incident response processes.
How long does technical integration take?
Basic operation without integration: ready immediately. API integration and Jira connection: a few hours. SSO/SAML configuration: one working day with standard identity providers.
Is there a test environment?
The 7-day trial serves as a full test environment with no credit card required. For enterprise customers we discuss dedicated setups as part of the pilot project.
Integration into existing tech stacks
API-first, secure architecture, hosting in Germany – ready for enterprise rollout.
View API & integrations