General Data Protection Regulation in the practice of idea management

Basic knowledge on data protection for idea managers

Walldorf-based dacuro GmbH ( provides companies with an external data protection officer, assists in fulfilling documentation obligations and advises on all aspects of data protection. dacuro GmbH aims to comply with the requirements of the General Data Protection Regulation (GDPR) without obstructing day-to-day life. The team of lawyers and IT specialists provides support for all challenges of the GDPR, whether of a legal or technical nature.

The General Data Protection Regulation in the practice of idea management

The European General Data Protection Regulation (GDPR) has been in force since May 25, 2018, and is developing an ever-increasing effect. Many companies have, in the past few years, taken steps to implement the requirements contained therein. Not least for that reason, the number of GDPR guidebooks and implementation aids has also risen. However, many have realised that, when implementing the GDPR, just like when doing the Spring cleaning, some of the problem areas are only gradually starting to become apparent. Such an “area” that is frequently still neglected in terms of data privacy, is idea management.

In this article we, as idea managers, would like to explain to you what basic knowledge on data privacy ought to be available to you. Specific recommendations for action arise from our explanations, which we will summarize at the end. This article should put you in a position to discuss the topic of data privacy professionally with an internal or external data privacy officer, and, building upon that, check your activities for completeness and legal compliance in your sphere of responsibility in idea management.

Our explanations can obviously not constitute legal advice. On top of that, some GDPR requirements are only gradually becoming clear in terms of their application by the authorities and in case law, so that it is, at present, impossible to be certain about the completeness of the explanations.

Definitions (Article 4 GDPR)

Before we embark on setting out the data protection requirements of idea management, some terms should first be clarified.

"personal data"

The key term of data protection is that of “personal data”. In general, that means data that can be assigned to an identifiable person. “Personal data” in idea management, includes, for example, the name, staff ID, email address, but also any links with which a person can be connected with an idea (e.g. as the submitter, reviewer or person responsible for realization) or a group of employees (e.g. as an idea management committee member or idea manager) – i.e. any data which can be assigned to an identifiable employee.

"data processing"

Data protection takes place in the context of the “processing” of personal data by a “controller”. The term “processing” is very broadly construed, and covers, inter alia, the storage, display or erasure of the data of an identifiable person. This person is then known as the “data subject”.

"Idea Management"

The “controller” within the meaning of the GDPR is always the legal person within the sphere of which the data processing takes place. Within an organization, however, the organizational unit of Idea Management is responsible for the processing of personal data in the idea management system.


In most cases, a manufacturer of standard software for idea management may not only be commissioned with delivering the software, but also with the implementation and support. Thus, the software company becomes a “processor”, which processes personal data on behalf of the controller.


The personal data processed needs to be appropriately protected by the controller. This not only concerns measures such as protection against viruses or controlling access to the server room. The GDPR also explicitly names “pseudonymization” as a measure for protecting the data of data subjects. “Pseudonymization” of personal data in idea management means that the latter can no longer easily be assigned to a specific person. For example: For all roles (submitter, reviewer, responsible persons ...), IDs are used to identify the role owner. Only by drawing upon information from the separately protected human resources system can it be assigned to a specific person.

Target idea management software directly accesses the required HR data within the SAP system, so that a data interface with redundant storage of HR data in the idea management software is dispensed with. This circumstance substantially facilitates compliance with the GDPR, because the personal data is only stored in the idea management system in pseudonymized form. Idea data includes personnel numbers for the submitter, reviewer, person responsible for realization, etc. Only by drawing upon additional information from the personnel tables in the SAP system can the ideas be assigned to a specific person.

Principles relating to the processing of personal data (Article 5 GDPR)

The GDPR describes several principles that need to be complied with in every instance of processing personal data. These are the principles of purpose limitation, data economy or data minimization, accuracy, storage limitation, integrity and confidentiality. In addition, each instance of data processing is subject to the controller’s accountability. Said accountability substantiates the necessity of keeping a record of processing activities pursuant to Art. 30 GDPR, which we will deal with later. Obviously, an entry concerning idea management should also exist in this record, from which in particular access rights and erasure deadlines can be inferred.

When implementing idea management, in particular the principles of purpose limitation and data minimization need to be observed, i.e. the processing needs to be appropriate to the purpose of “idea management”, as well as limited to the extent necessary.

The personnel number, name, email address or organizational allocation, which determines the responsible manager or idea manager, is obviously necessary information. In other cases, which data is necessary depends on the circumstances. Personal address data is, for example, necessary if the idea management is linked to a reward shop, which sends non-cash prizes to the private address. In most cases, private address data may, however, be unnecessary.

In many cases it will depend upon the role of the user, in regard to an idea, which personal data is displayed to the user. In the case of a general idea search, e.g. according to keywords, ideas which satisfy their search criteria and have been permitted by the company for said search (e.g. only closed ideas, not pending ideas), will be shown to the user. Anyone enquiring about the purpose of such a search will receive various different answers, such as “I have an idea, but perhaps someone has already thought of it”, or “I have a problem, perhaps there is already a solution.” It is not relevant, for said purposes, to display the submitters, or show even the rewards paid. AS a consequence, such data should in this context not be accesible. In other cases, the decision is more difficult. May the submitter see who was the reviewer, and what is in the review? There may be differing opinions on this, which are connected with the corporate culture of a company.

Use of information, such as the gender, age or nationality, with which statistics on their respective share in registering ideas could be shown, is, in our opinion, generally not permissible, because such data is generally not necessary for idea management. Should a statistical survey on the use of idea management in a company have become necessary, such a time-limited survey can be conducted as a separate processing activity. This then, however, needs to independently fulfill the requirements of the lawfulness (as discussed below) and the above-mentioned basic principles. To describe this in detail would, however, go beyond the scope of this article.

Accountability rests with the idea management, i.e. the idea management needs to be able to provide evidence of complying with the principles.

Lawfulness of the processing (Article 6 GDPR)

According to the data privacy laws, any data processing needs to be “lawful”, i.e. it has to be undertaken based on recognized grounds. Such grounds are listed in Art. 6(1) GDPR, and include, for example, consent, or a contract with the data subject, but also the fulfillment of specific statutory obligations. The lawfulness of the processing will, generally, emerge from your works agreement on idea management.

It is, however, to be kept in mind that, basically, only the data processing procedures that are “indispensable” in regard to such specific “grounds” are covered by a legal basis. It may therefore be consequently necessary to obtain additional consent. In this respect, we recommend you provide for a check box on the submission form for an idea, with which the submitter needs to declare his or her consent to said data processing.

It is, however, to be kept in mind that it is an integral component of consent under data privacy law that it can also be revoked. Should you wish to include such a check box for obtaining consent, internal processes need to be in place to keep the evidence at hand, as well as to implement any revocation.

It is, moreover, advantageous for you to provide for a link to the works agreement, and one to the data privacy policy, within the software, so that a submitter can understand the context of the data processing – as described accordingly.

The Obligation to Provide for Information on Data Processing (Article 13 GDPR)

If personal data is gathered from a data subject, the idea management system needs to inform the data subject about this fact and give specifics about the processing activities.

Personal attributes (name, email address, organizational allocation, etc.) are probably never gathered by the idea management, but by the office responsible for the HR administration. The HR master data needed is made available to the idea management.

If, however, an employee is assigned a certain role in the idea management process (e.g. as a reviewer, responsible persons, person responsible for realization ....) of an idea, personal data will also be gathered, as a result, which triggers a corresponding information reporting obligation. In this respect, an email to the data subject containing the relevant information is sufficient. Logically, the recipient can directly access the software from this email, via a link, in order to complete any additional task there.

The email should likewise include a link to a data privacy policy specific to the idea management system.

This requirement is based on the following: Generally, the idea management software is integrated into the staff portal of the corporate Intranet. A general data privacy statement is to be kept at hand by the company in such a staff portal. Depending upon the focus of the content, an additional data privacy policy is to be prepared that is specific to the topic. This is also the case for the idea management system. In the specific data privacy policy for the idea management system, statements are made, for example, concerning which personal data is processed in idea management, and when it is erased. Under Art. 13 GDPR, this information is to be made available to the data subjects at the time of the data being gathered.

The right to erasure (‘right to be forgotten’) (Article 17 GDPR)

The GDPR, moreover, substantiates legally enforceable rights for data subjects. These are the right to information and the right to receive a copy of the data kept at hand, the right to accuracy of the data processed and the right to erasure or restriction of the processing of said data.

What is relevant for idea management here is the employee’s right for information about his or her contributions to ideas (as a submitter, reviewer, person responsible for realization, or in any other role) to be erased if they so request or if such personal data is no longer needed for the purposes of idea management. The scope of the right to erasure does not, however, cover the case where the fulfillment of a legal obligation is in conflict with the latter.

The right to have personal data erased does not require the idea to be deleted. The idea history (descriptions, comments, benefit calculation, etc.) can by all means be retained. The right to erasure rather means that the links to persons need to be removed. This principle of removing the personal reference does, however, include more than is apparent at first sight.

However, before we discuss this point, we would like to address the question of when personal data is no longer needed for the purposes of idea management in a closed idea.

Usually, the following deadlines are laid down in a Works Agreement, which regulate the storage of the idea beyond the mere realization or rejection of an idea:

  • Objection deadline:
    The employee files an objection against the decision in regard to an idea (rejection or benefit calculation), with the consequence that the idea is restored to the processing status and the personal data needs to continue to be available. In practice, a deadline of a few months will be given to file an objection, in this scenario.

  • Priority deadline:
    Should a rejected idea be submitted by another employee again at a later date, the initial submitter will be given priority within the priority deadline. The priority deadline will usually be set at one to two years.

  • Period of protection:
    Should an idea that was initially rejected still be implemented within the period of protection, claims arise on the part of the submitter. The period of protection is generally laid down as being one to two years.

  • Period for the lapse of claims under employment law:
    An agreement on this point can be entered into in an employee’s employment contract, typically specifying a period of some months. Without any contractual regulation, a deadline of three years applies to the period of limitation of any claims under employment law, pursuant to the German Civil Code (BGB).

As a rule of thumb, it may therefore be the case that personal data is no longer needed within the ideas for the purposes of idea management after approx. three years. Caution: this does not, however, mean that the personal data in all ideas may generally be removed after such period of time, as, in addition, you need to observe provisions concerning tax law.

Because of such provisions concerning tax law, you need to differentiate ideas that attract a reward from ideas that do not attract a reward in regard to the erasure period. In regard to ideas that do not attract a reward, it can be established that the personal reference needs to be erased after three years.

Rewards result in additional data in wage and salary accounting. In practice, this concerns wage types with the additional details such as personnel number, wage type ID, amount, date of emergence, ID of the proposal for reference purposes and any cost center ID for allocating the costs of the reward to the cost center making use of the idea. This data falls under the same provisions and archival deadlines as other data relevant to wages and salary.

In accordance with provisions concerning tax law (German Fiscal Code (AO)), a retention period of 10 years applies to accounting documentation and business receipts. This period may, however, still be extended, e.g. if the tax assessment for individual years has only been issued provisionally. This retention period primarily concerns the accounting center at your company. What is to be discussed, then, is whether the long retention period now also relates to the personal data contained in the ideas.

As per our assessment, the question is to be affirmed, i.e. the long retention period is also to be observed for personal data in idea management.  In the “principles of proper management and storage of books, records and documents in electronic form, as well as regarding data access” (GoBD), it says: “Besides the non-fiscal and fiscal books, records and documents on business transactions, all the documents that are of significance in the individual case for understanding and reviewing the records that are required by law for taxation purposes are to be saved (cf. Federal Court of Finance (BFH) judgment of June 24, 2009, BStBl/Federal Tax Gazette II 2010, p. 452).”

In plain English: It is not sufficient to only save the digital wage type receipt at the Accounting Center for the payment of the reward. An auditor could request to inspect the corresponding idea (including the personal data), because the reward can only be verified in that way. The personal data is necessary, as the reward may depend upon personal facts, such as the share of the submitter and the assessment of the proximity to the area of responsibility.

There is a simple and pragmatic approach to this, i.e. to basically delete any ideas that do not carry a reward after three years, and any ideas that do carry a reward following the expiry of the retention period (10 years or more). The disadvantage is the loss of the idea history, however, every company should ask whether ideas that were, in any case, closed over 10 years ago are still worth saving.

Rather than deleting the ideas, it would, obviously, also be conceivable to retain the ideas as such, and only remove the personal reference. This may, however, in practice, prove to be difficult, and involve a lot of effort.

It can, namely, not be excluded that references to persons that are not so easily recognizable are contained in the flowing text describing an idea. Any information and details which permit identification turn a data set into personal data. If, for instance, it is clear from the text that the submitter was male, however there was, at the period of time in question, only one (well-known) man in the corresponding department, that means that personal data is concerned. The same is conceivable if, for example, origin, language, physical features, etc. come into the picture. Such features, taken together, for example, with information on the department or the corporate position, often make it possible for individuals to be identified without the name or contact details.

Electronic documents that can be attached to an idea moreover frequently contain personal data in the so-called “metadata”. Thus, often, for example, the author or the most recent change is recorded via the document properties. Also in this case, personal data is concerned. That is, on the face of it, not immediately visible, and may even not be known to many people.

Deleting the entire idea is therefore the more cautious option.

As a last point, it should be mentioned that data also needs to be erased upon the request of the data subject, as the case may be, prior to the expiry of “normal” retention periods. Should a submitter withdraw his or her idea, and thus forfeit priority claims, and should he or she not have received a reward, the idea data must be erased upon request without delay, or the personal reference removed. A company may not then claim any proprietary interest in such (personal) data without their being a legal obligation to retain them. This does not, however, necessarily mean that the gist of the proposal for improvement cannot nevertheless be retained and implemented. The employee in question has then, as the case may be, has only taken care that no informational link to the fact that they was the submitter of said idea to exist.

Let us summarize the above explanations: The obligation to erase personal data from the idea management system exists, in regard to ideas not carrying a reward, after three years; in regard to ideas carrying a reward, at the earliest after ten years. An extension occurs if reasons for keeping accounting documentation for a longer period exist. The fulfillment of provisions concerning tax law does not permit any earlier erasure of personal data associated with ideas carrying a reward. Prior erasure is, however, possible upon request – especially if no further transactions or procedures, such as being paid a reward, were triggered by the idea. The retention obligations under tax law generally take precedence over an erasure request.

The “target” software offers all the necessary options for implementing the “right to be forgotten”, irrespective of which of the possible routes the customer chooses.

Processor (Article 28 GDPR)

As idea management is frequently implemented by external software, the question has to be posed here, whether external data processing services are concerned. If the service provider is given access to personal information, a data processing agreement needs to be drawn up between the controller and the processor. Such access exists if (unencrypted) data is stored on a service provider’s system, or if a service provider is given access to personal data via remote access.

Instances of maintenance access can often not be limited in such a way that access to databases containing the actual data of employees is impossible.  To that extent, in most cases a contractual data processing relationship under Art. 28 GDPR exists. However, if the service provider’s access is only limited to (development) systems, where no information whatsoever on real persons resides, a data processing agreement is not required.

A controller may only draw upon a processor (in the specific case, a service provider who provides software and services within the idea management system) – in particular in light of expertise, reliability and resources - that offers adequate guarantees that technical and organizational measures which satisfy the requirements of the GDPR are being complied with. Such guarantees are made in the course of signing the agreement, and are, as the case may be, in turn reinforced by reports.

The “target” software solution has introduced an entrepreneurial data privacy organization which is regularly reviewed and monitored. We will, upon request, provide our customers with a sample agreement on data processing.  The technical and organizational measures of “target” are periodically updated in the light of new technical options. Recurrent training events on data privacy are mandatory for all employees.

Records of processing activities (Article 30 GDPR)

As already mentioned above, idea management is also reflected in the record of processing activities. The idea manager may significantly influence the information incorporated there. Although the record of processing activities may perhaps appear a tiresome exercise, the content of it is indeed extremely relevant. Thus, not only the Data Privacy Officer will base his or her risk assessment on the information stored here, but the supervisory authorities will also, in the event of a complaint, regularly retrieve the corresponding entries in the records. The description provided there then influences the official assessment of the situation complained about. 

The idea management system needs to create an entry, from which, among other things, the purpose of the processing activity, the legal basis for gathering it, the category of the data processed, the access authorization and the indicative deadlines for erasure can be seen, as well as the existence of a contract data processing relationship.

Care is to be taken here to ensure that the data processing in regard to the roles existing in the idea management system is described clearly, and the various possible cases (e.g. with/without a reward) are clearly defined, in order to avoid subsequent objections by the authorities.

Recommendations for action – what you need to pay attention to

We are summarizing for you the recommendations for action arising from the above explanations, in accordance with the following classifications:

  • Documentation of the processing procedures
  • Selecting the partner for software and services
  • Configuring and operating the software

In regard to “documentation”, please note these points:

  • Create an Intranet page with a data privacy policy for the idea management system.
  • Create an entry in the procedure record.

In regard to selecting the partner for the software and services, please note these points:

  • Only select a partner who offers adequate guarantees under the GDPR.
  • Conclude a contract data processing agreement.

In regard to “Configuring and operating the software”, please note these points:

  • Minimize the personal data.
  • Show only the data necessary, according to the role or task.
  • Link to the data privacy policy in the idea management software and in all emails that are sent concerning  idea management.
  • Link to the Works Agreement in the idea management software.
  • Provide for a mandatory check box for consent on the submission form.
  • Inform a person each time that an idea is allocated to him or her.
  • Delete ideas not carrying a reward after approx. three years – or - remove personal data in ideas not carrying a reward after such period.
  • Delete ideas carrying a reward following the expiry of the archival period (10 years or more) – or - remove personal data in ideas carrying a reward after such period.

Additional information

Additional information is available for "target" customers in the “my target” area (login required).


Many companies are only gradually grasping the extent of the data privacy obligations. There will more than a few who have not yet at all considered the relevance of idea management systems when implementing the GDPR. Since, however, personal data is also processed in the context of idea management, the GDPR compliance does play a role.

This circumstance should, however, not be any reason to panic. Although, for GDPR-compliant implementation of idea management, there are one or two points to note, nobody is, in this respect, expected to do the impossible. It will generally be possible for the recommendations for action specified above to be implemented quite well as long as some care and time is invested.

Headerbild zu Data Governance Consulting

Data Governance

Data Governance describes all processes that aim to ensure the traceability, quality and protection of data. The need for documentation and traceability increases exponentially as more and more data from different sources is used for decision-making and as a result of the technical possibilities of integration in Data Warehouses or Data Lakes.

Headerbild zu IBM Cloud Pak for Data Accelerator

IBM Cloud Pak for Data Accelerator

For a quick start in certain use cases, specifically for certain business areas or industries, IBM offers so-called accelerators based on the "Cloud Pak for Data" solution, which serve as a template for project development and can thus significantly accelerate the implementation of these use cases. The platform itself provides all the necessary functions for all types of analytics projects, and the accelerators provide the respective content.

Atlassian Data Center Competence Center - Expertise & Untertützung durch catworkx für Ihre Atlassian-Infrastruktur

Data Center Competence Center

Comprehensive Atlassian Data Center expertise, since the launch in 2014: catworkx supports you in all aspects of your Atlassian infrastructure.

Headerbild Data Insights

Data Insights

With Data Insights, we help you step by step with the appropriate architecture to use new technologies and develop a data-driven corporate culture: from the development of new data sources, to exploratory analysis to gain new insights, to predictive models.


The new Idea and Innovation Management of the DDPS

The new solution is available to employees in the familiar portal and in the same design. It is very easy to use and adapted to the needs of the role holders. It was easy to move away from the old platform. The switch to the new solution is rated very positively by all roles.

Articifial Intelligence & Data Science

Artificial Intelligence & Data Science

Data Science is all about extracting valuable information from structured and unstructured data. Together with Artificial Intelligence (AI) – the ability of a machine to imitate intelligent human behavior – you can make accurate decisions, based on high-quality information. Moreover, you can react quickly to recent developments.

Infrastructure Resource Management

Infrastructure Resource Management

Whether on-premise or in the cloud: With modern Infrastructure Resource Management, you provide your applications with the right amount of resources at all times.

Infrastructure Resource Management

Infrastructure Resource Management

Whether on-premise or in the cloud: With modern Infrastructure Resource Management, you provide your applications with the right amount of resources at all times.


JOIN(+) becomes part of TIMETOACT GROUP

Cologne/Villingen-Schwenningen, 11 December 2024 – TIMETOACT GROUP, a leading provider of IT services for the upper mid-sized-market companies, corporations and public institutions, is acquiring JOIN(+), an experienced consulting company in the field of Big Data & AI. The two managing directors of JOIN(+) will continue to manage the company after the transaction and will be responsible for its integration into TIMETOACT GROUP.

Navigationsbild zu Data Science

AI & Data Science

The amount of data that companies produce and process every day is constantly growing. This data contains valuable information about customers, markets, business processes and much more. But how can companies use this data effectively to make better decisions, improve their products and services and tap into new business opportunities?


Implementing target idea management software

Take full advantage of all the benefits of target software for your idea and innovation management. We support you with the implementation.

Headerbild zu Operationalisierung von Data Science (MLOps)

Operationalization of Data Science (MLOps)

Data and Artificial Intelligence (AI) can support almost any business process based on facts. Many companies are in the phase of professional assessment of the algorithms and technical testing of the respective technologies.


JOIN(+) becomes part of TIMETOACT GROUP

TIMETOACT GROUP, a leading provider of IT services for the upper mid-sized-market companies, corporations and public institutions, is acquiring JOIN(+), an experienced consulting firm in the field of Big Data & AI.

Headerbild IBM Cloud Pak for Data System

IBM Cloud Pak for Data System

With the Cloud Pak for Data System (CP4DS), IBM provides the optimal hardware for the use of all Cloud Pak for Data functions industry-wide and thus continues the series of ready-configured systems ("Appliance" or "Hyperconverged System").


beBOLD becomes part of TIMETOACT GROUP

Cologne/Hamburg, January 20, 2025 – TIMETOACT GROUP, a leading provider of IT services for large enterprises, mid-sized businesses, and public institutions, has acquired beBOLD, an independent consultancy specializing in cloud transformation projects. The two founders and managing directors of beBOLD will continue to lead the company after the transaction and oversee its integration into the TIMETOACT GROUP.


Trustbit becomes part of TIMETOACT GROUP

TIMETOACT GROUP, a leading provider of IT services for medium-sized businesses, corporations and public institutions, is acquiring Trustbit, an experienced Austrian consulting firm focused on digital transformation and the development of digital business models.

Headerbild zu Data Vault

Data Vault Modeling Approach

Data Vault is a modeling technique that is particularly suitable for agile Data Warehouses. It offers high flexibility for extensions, complete historization of data and allows parallelization of data loading processes. Data Vault supports without significantly increasing the complexity of the Data Warehouse over time.

Migration zum Cloud Competence Center

Atlassian Cloud Migration

catworkx supports you in all aspects of Atlassian Cloud migration or the introduction of the appropriate cloud solution.

Headerbild zu Talend Data Fabric

Talend Data Fabric

The ultimate solution for your data needs – Talend Data Fabric includes everything your (Data Integration) heart desires and serves all integration needs relating to applications, systems and data.


Spend Management Consulting

Regardless of whether you are aiming for a digital transformation in your company or are asking yourself whether your IT is costing too much or how you can cut costs, the first step is always based on creating transparency. Only when you have clarity about all relevant IT costs can you take the next targeted action.


Artificial Intelligence & Data Strategy

Every company collects and manages vast amounts of data, e.g. from production processes or business transactions. However, only a fraction of this data is used effectively to support control and decision-making processes.


Intelligent Document Processing now even more efficient!

For these reasons, we are constantly improving our performance in the field of Intelligent Document Processing and now have a strong partner at our side in the form of the experts from PLANET artificial intelligence GmbH in Rostock.

Headerbild zur automatischen Handschrifterkennung bei Versicherern

Automatic handwriting recognition for insurers

The recognition of handwriting works "out of the box". In addition, we support our customers in further document classification and extraction of specialized data so that it can be processed automatically.

Navigationsbild zu Data Science

Data Science, Artificial Intelligence and Machine Learning

For some time, Data Science has been considered the supreme discipline in the recognition of valuable information in large amounts of data. It promises to extract hidden, valuable information from data of any structure.

Headerbild zu Digitalem Ökosystem

Fit for the digital ecosystem

Insurers are digitally networking with their ecosystem to gain critical capabilities in a division of labor. Personal data, object data or transaction data are securely exchanged via common digital interfaces. For end customers, this results in a consistent "experience" to their concerns, regardless of which service provider is currently contributing.


TIMETOACT GROUP acquires transformation expert PKS

We are very pleased to welcome PKS Software GmbH with its approximately 60 employees as a strong partner in the TIMETOACT GROUP. After years of successful cooperation, we are now taking the next step.

Headerbild IBM Cloud Pak for Data

IBM Cloud Pak for Data

The Cloud Pak for Data acts as a central, modular platform for analytical use cases. It integrates functions for the physical and virtual integration of data into a central data pool - a data lake or a data warehouse, a comprehensive data catalogue and numerous possibilities for (AI) analysis up to the operational use of the same.


New shareholder structure at target Software Solution GmbH

Hanno Hofmann, founder of Walldorf Consulting AG, acquires all shares in target Software Solution GmbH.


Idea management software for use in the cloud

With our idea management tool target Idea Management (Cloud), we are expanding the functions of our on-premise solution with a hybrid cloud add-on.

Analytics und Business Intelligence

Analytics & Business Intelligence

Analytics & Business Intelligence has become increasingly important in recent years. Companies that do not deal with Analytics and Business Intelligence find it difficult to cope with nowaday's huge amounts of data. With the help of analytical concepts and special software you can collect data of your own company, competitors or market developments to make your business processes and customer and supplier relationships more successful.

Teaserbild zu Data Integration Service und Consulting

Data Integration, ETL and Data Virtualization

While the term "ETL" (Extract - Transform - Load / or ELT) usually described the classic batch-driven process, today the term "Data Integration" extends to all methods of integration: whether batch, real-time, inside or outside a database, or between any systems.

Software & Application

Software & Application

Agility, Application Modernization, Fullstack Development and Requirement Engineering are important aspects of Business Application Development. No matter what kind of web project you are dealing with – we design and develop the right application for you and support you with our expertise.


Recertification solution of FI-TS

With the support of TIMETOACT GROUP, the IT service provider succeeded in raising the quality of authorization recertification to a new level.


Idea management software for local applications

Idea management software with SAP technology: Optimize your idea management for more participation and greater benefits.

Risiko Management im Bereich der Governance immer wichtiger

Introduction of an Identity Management System (IDM)

Introduction of an identity management system (IDM) in a corporate division with the focus on automating the joiner/mover/leaver processes. In addition, data cleansing was to take place in the user area to also enable a reduction in licensing costs.

Headerbild zu Intelligente Dokumentenverarbeitung / Intelligent Document Processing

Intelligent Document Processing (IDP)

Intelligent Document Processing (IDP) involves the capture, recognition and classification of business documents and data from unstructured and semi-structured texts. IDP uses the latest technologies to automatically find case-relevant information in the abundance of documents and to control further processing in context.

Teaserbild Enterprise Content Management (ECM) Beratung

Enterprise Content Management (ECM) & Archiving

With Enterprise Content Management (ECM), all data, information and documents are stored, archived and managed in a context-related manner on a single platform. ECM systems offer numerous advantages for managing the increasing number of (un)structured electronic documents and data.


target Idea Management Release SVP 11 is now available

In May 2024, we released the new SVP 11 version of our on-premise software target Idea Management.


Digitization of the energy industry

The energy sector is undergoing an unstoppable process of change. Progressive digitization and the energy transition are causing traditional system and process boundaries to disappear.

Commerce & Customer Experience, CRM

Commerce & Customer Experience, CRM

In trade, a positive customer experience (CX) is of central importance for the continued success of a company. To achieve this, the customer's expectations must be met at all touch points. For this reason, we rely on Omni-Channel with Product Information Management (PIM) solutions, appealing design, individual digital strategies for each industry and the creation of a User Experience based on sound analyses.

Releasewechsel eines eingesetzten IAM-Tools

Release change of a deployed IAM tool

TIMETOACT received the order to carry out a major release change for the IAM tool used and to develop the processes back to the standard of the product as far as possible. At the same time, a change of service provider became necessary, which meant that all components of the IAM had to be moved to a new data center.


Portfolio Project Management (PPM)

The implementation of Project Portfolio Management with Atlassian Tools supports the visibility of global project and quality management tasks as well as Cross-Project Information and Knowledge Management - all from a single platform. All of an organization's ongoing and planned projects can be permanently prioritized, coordinated and controlled.


Digital Architecture

In order to survive in a dynamic and highly competitive market, you need to be able to adapt your business processes, products and services quickly and efficiently to the needs and expectations of your customers. The architecture of your IT systems plays a decisive role in this. A digital architecture is a holistic and flexible design of the IT landscape that supports the integration of data, applications and services across different platforms and applications and promotes the innovation, agility and scalability of your company.


Digitalization and optimization in the manufacturing industr

The TIMETOACT GROUP is a leading provider of solutions for the manufacturing industry. We are proud to offer our customers innovative technologies and services that optimize their manufacturing processes and increase their competitiveness.



Insurance companies live by making a promise to people - and that promise is security. Crucial to success is not only the mastery of new technologies and new forms of collaboration, but above all a change in corporate culture.


Idea and innovation management software service

With the target software service, your innovation management software is always up to date. As an existing customer, you benefit from all new developments as part of your support contract - at no extra charge.

Security, Identity & Access Management

Security, Identity & Access Management

Time and again we hear about hacker attacks on companies that target sensitive company data. Therefore, security and access control of data must never be neglected. Rely on a qualified Security, Identity & Access Management!


Proof-of-Value Workshop

Today's businesses need data integration solutions that offer open, reusable standards and a complete, innovative portfolio of data capabilities. Apply for one of our free workshops!


The new target Idea Management Release SVP 9 is now availabl

The new SVP 9 release of our on-premise software target Idea Management offers numerous advantages. The highlight: complete workflow mapping with Fiori apps!


Decision Automation

Companies today are faced with the challenge of making increasingly complex decisions in a shorter time frame in order to remain competitive and act in a customer-oriented manner. At the same time, they have a wealth of data at their disposal that can potentially provide valuable insights, but is often difficult to analyze and use. Decision automation is an approach that aims to combine human intelligence with machine algorithms to support or automate better and faster decisions.


Talend migration in record time

TIMETOACT migrated the Talend Data Integration Suite, including all workflows and processes, to the internal system environment of the municipal utility (with a subscription license) within a very short period of time and will continue to provide support as a support partner in the future if required.


Jira Essentials with Agile Mindset (Data Center)

Over the course of "Jira Essentials with Agile Mindset (Data Center)" training course participants learn the basics of Jira.

Headerbild zu Cloud Pak for Data – Test-Drive

IBM Cloud Pak for Data – Test-Drive

By making our comprehensive demo and customer data platform available, we want to offer these customers a way to get a very quick and pragmatic impression of the technology with their data.



TIMETOACT Software & Consulting GmbH will transfer the administrative areas and TIMETOACT GROUP Sales to its parent company, TIMETOACT GROUP GmbH, as of January 1, 2024.


Microsoft Azure Synapse Analytics

With Synapse, Microsoft has provided a platform for all aspects of analytics in the Azure Cloud. Within the platform, Synapse includes services for data integration, data storage of any size and big data analytics. Together with existing architecture templates, a solution for every analytical use case is created in a short time.

Neues Training für Atlassian Jira: „Realizing the Power of Jira Reporting & Dashboards” jetzt auch für die Cloud

Realizing the Power of Jira Reporting & Dashboards (DC)

Over the course of "Realizing the Power of Jira Reporting & Dashboards (Data Center)" participants will learn about the basic functions of Jira dashboards and reports.


Adoption & Change Management

Adoption & change management are decisive factors for the success of digital transformations. They deal with how people, processes and cultures adapt to new technologies, strategies and ways of working. Without an effective adoption & change management strategy, companies cannot realize the full potential of their investments, overcome resistance and achieve sustainable change.

Headerbild zu Dashboards und Reports

Dashboards & Reports

The discipline of Business Intelligence provides the necessary means for accessing data. In addition, various methods have developed that help to transport information to the end user through various technologies.

Rinat AbdullinRinat AbdullinBlog

State of Fast Feedback in Data Science Projects

DSML projects can be quite different from the software projects: a lot of R&D in a rapidly evolving landscape, working with data, distributions and probabilities instead of code. However, there is one thing in common: iterative development process matters a lot.


EverIT becomes part of catworkx and TIMETOACT GROUP

Cologne/Budapest, 4 November 2024 – catworkx (part of TIMETOACT GROUP), a leading partner for Enterprise integration based on the Atlassian platform, is acquiring EverIT, a specialized Hungarian based Atlassian Partner. Together, the companies will build on their long-standing relationship and expand catworkx’s leading market position into Central Eastern Europe and strengthen catworkx’s global offering. The parties agreed not to disclose the details of the transaction.


We are offering cloud-based SAP solutions consulting now!

TIMETOACT GROUP expands into cloud-based SAP solutions consulting with the acquisition of WCA Walldorf Consulting and target Software Solution


Standardized data management creates basis for reporting

TIMETOACT implements a higher-level data model in a data warehouse for TRUMPF Photonic Components and provides the necessary data integration connection with Talend. With this standardized data management, TRUMPF will receive reports based on reliable data in the future and can also transfer the model to other departments.


target Software Solution merges with WCA Walldorf Consulting

The IT companies join forces – for more flexibility and less bureaucracy


Sourcing Strategy, Spend Management & Compliance

Despite increasingly powerful IT, IT costs are rising steadily in relation to revenue / EBITDA. IT operations are causing more and more costs, and the budget for innovations in digital transformation is suffering as a result. Shifting the balance between operations and innovation is a strategic task.


New target Idea Management Release SVP 10 is now available

The new release offers numerous advantages. Among them: Even better user interface made possible by SAP Fiori 3!


TIMETOACT GROUP becomes patron of ITAM Forum

As part of the cooperation, TIMETOACT GROUP now also offers companies comprehensive consulting services for IT Asset Management certification ISO/IEC 19770-1


Security, Identity & Access Governance

As digitalization progresses, companies are also confronted with a growing number of threats that can endanger their data, systems and reputation. Security and Identity & Access Governance (IAG) are crucial to ensure the security, integrity and confidentiality of company information, to ensure compliance with regulations and to strengthen the trust of customers and partners.


brainbits is now part of TIMETOACT GROUP

With the akquisition of the cologne based IT expert brainbits we are enlarging our Atlassian and Webdevelopment Know How

Headerbild zu Digitale Planung, Forecasting und Optimierung

Demand Planning, Forecasting and Optimization

After the data has been prepared and visualized via dashboards and reports, the task is now to use the data obtained accordingly. Digital planning, forecasting and optimization describes all the capabilities of an IT-supported solution in the company to support users in digital analysis and planning.

Führender Atlassian-Champion STAGIL wird Teil der Timetoact Group

Leading Atlassian Champion: STAGIL becomes part of TIMETOACT

TIMETOACT GROUP, a leading provider of IT services for upper mid-sized companies, corporations and public institutions, acquires STAGIL, one of Germany's largest Atlassian Platinum and Enterprise Solution Partners: With this acquisition, TIMETOACT GROUP's Atlassian consulting portfolio, which is managed under the catworkx brand, moves up into the top league in the German-speaking region. The former STAGIL managing director Björn Frauen becomes co-managing director of catworkx Germany in the course of the merger. He will also become a shareholder in TIMETOACT GROUP. The parties have agreed not to disclose details of the transaction.


The IPG Group becomes part of the TIMETOACT GROUP

The TIMETOACT GROUP acquires the majority of the shares of IPG Information Process Group Holding AG, based in Winterthur. Through the acquisition, the competencies for Identity and Access Management (IAM) solutions in the DACH market are combined.

Nina DemuthBlog

From the idea to the product: The genesis of Skwill

We strongly believe in the benefits of continuous learning at work; this has led us to developing products that we also enjoy using ourselves. Meet Skwill.

Aqeel AlazreeBlog

Part 1: Data Analysis with ChatGPT

In this new blog series we will give you an overview of how to analyze and visualize data, create code manually and how to make ChatGPT work effectively. Part 1 deals with the following: In the data-driven era, businesses and organizations are constantly seeking ways to extract meaningful insights from their data. One powerful tool that can facilitate this process is ChatGPT, a state-of-the-art natural language processing model developed by OpenAI. In Part 1 pf this blog, we'll explore the proper usage of data analysis with ChatGPT and how it can help you make the most of your data.



IT and digitalisation are too often seen in Germany as pure cost drivers, without taking into account the revenue opportunities and potentials. We know the challenges in the healthcare sector and help you find the best IT solutions.


McKesson: Spend Management cuts software costs by 15%

McKesson's plan to significantly optimize its software spend and make its financial planning more transparent and efficient paid off: Thanks to the strategic consulting and services provided by TIMETOACT's spend management team, the company achieved savings of 15% with one of the largest software manufacturers and at the same time reduced the allocated risks by 89%.


Application Lifecycle Management (ALM)

Application Lifecycle Management (ALM) at catworkx fulfills all requirements from the development and support of applications to the entire lifecycle of an application using Atlassian tools.

Aqeel AlazreeBlog

Part 2: Data Analysis with powerful Python

Analyzing and visualizing data from a SQLite database in Python can be a powerful way to gain insights and present your findings. In Part 2 of this blog series, we will walk you through the steps to retrieve data from a SQLite database file named gold.db and display it in the form of a chart using Python. We'll use some essential tools and libraries for this task.


Getting more from Jira Workflows (Data Center)

Over the course of "Getting More from Jira Workflows (Data Center)" training participants learn about common status and transition properties, advanced workflow functionalities and how to configure them.