Organisationstrennung
Operative Daten liegen unter dem besitzenden Organisationsraum. Ein Kontextwechsel erweitert keine Rechte.
Datenschutz & Sicherheit
Sicherheit wird nicht nur über sichtbare Menüs erklärt. Kritische Pfade werden technisch an Organisation, Mitgliedschaft und Funktion gebunden und in Emulator-Tests geprüft.
Operative Daten liegen unter dem besitzenden Organisationsraum. Ein Kontextwechsel erweitert keine Rechte.
Vertretungsbeziehungen, Beitragskern, Import-Zuordnungen, Sitzungsnachweise und private Kalender-Zugänge werden nicht durch beliebige direkte Schreibzugriffe aus der App verwaltet.
Sensible V2.2-Aktionen erzeugen organisationsbezogene Prüfinformationen; finale Sitzungsprotokolle erhalten einen unveränderlichen Nachweishash.
Mitglieder- und vollständiger Organisations-Export sowie widerrufbarer ICS-Zugang machen Übergabe und Datenmitnahme nachvollziehbar.
Orgavio Assistenz ist kein paralleler Datenraum. Jede Anfrage prüft App-Integrität, Anmeldung, Organisation, aktive Mitgliedschaft und die für die konkrete Funktion benötigte Rollenberechtigung erneut auf dem Server. Ein Mitglied erhält durch eine Frage keine zusätzlichen Verwaltungsrechte.
Zugangsdaten eines optionalen Assistenz-Providers liegen nicht in der Flutter-App. Der Assistenz-Prüfpfad protokolliert nur minimale technische Metadaten wie Aktion, Akteur, Status und Zeitpunkt – nicht den eingegebenen Prompt, Diktattext, Dokumentinhalt oder erzeugten Inhalt.
Alle operativen Daten bleiben im besitzenden Organisationsraum clubs/{clubId}/…. Die beschriebenen Abläufe schaffen keine globale Organisationsdatenbank.
Privacy & security
Security is not explained only through visible menus. Critical paths are technically bound to organisation, membership and backend functions and verified with emulator tests.
Operational data lives under the owning organisation space. Switching context never expands permissions.
Guardian relationships, contribution core, import claims, meeting evidence and private calendar tokens are not managed through arbitrary direct client writes.
Sensitive V2.2 actions create organisation-scoped audit information; final meeting minutes receive an immutable evidence hash.
Member and complete organisation exports plus revocable ICS access make handover and data portability traceable.
Orgavio Assistant is not a parallel data space. Every request rechecks app integrity, authentication, organisation, active membership and the permission required for the specific function on the server. Asking a question never gives a member additional management rights.
Credentials for an optional assistant provider are not stored in the Flutter app. The assistant audit records only minimal technical metadata such as action, actor, status and time — never the entered prompt, dictated text, document content or generated content.
All operational data stays inside the owning organisation space clubs/{clubId}/…. These workflows do not create a global organisation database.