Test seal transparency
Trust

EUSEC conducts various product tests. Below you will find general information about how we work, our structure and funding, our processes, measures, terms of use, and legal matters.

EUSEC.net

The EUSEC.net online magazine is a service provided by BaySec – Bayerische Gesellschaft für Cybersicherheit mbH (hereinafter referred to as BaySec). Since 2025, EUSEC.net has been a portal for digital topics (e.g., connected devices, apps, and digital services) with a focus on cybersecurity, comprehensive IT security, and data protection. The EUSEC® seal/logo is privately issued and not a government-issued seal.

The goal of EUEC.net is to foster a societal discussion regarding the importance of data protection and IT security, particularly concerning networked devices, apps, and digital services, and to contribute to consumer protection. BaySec was founded in 2022. BaySec is a partner of the Alliance for Cyber ​​Security of the German Federal Office for Information Security (BSI). It provides training for the BSI IT Baseline Protection Practitioner certification and administers the corresponding examinations. Furthermore, BaySec is the conformity assessment body for the BSI’s IT security label. We possess outstanding expertise in the field of data protection and IT security.

Structure and financing

EUSEC.net is a service provided by BaySec – Bayerische Gesellschaft für Cybersicherheit (Bavarian Society for Cybersecurity), which is 100% privately owned by its founder and managing partner, Benjamin Salko Nitzinger. The company is headquartered in Anger, Germany. The goal of the EUSEC.net portal is to provide objective reporting in the field of technology, with a particular focus on data protection and IT security aspects of smart devices, digital services, and apps. BaySec – Bayerische Gesellschaft für Cybersicherheit mbH – offers cybersecurity services through other platforms and business units (e.g., www.bay-sec.de ). However, the licensed awarding of a seal or award is excluded if BaySec has advised the client in question on the relevant audit/test/certification within the preceding 12 months.

EUSEC® provides assessments free of charge and is financed through the sale of licenses for seals and award logos, as well as security/data protection tests and certifications. Payment is made upfront and is independent of the outcome. There is no obligation to award a specific result, and payment is not tied to any particular outcome. Every assessment, test, or certification is conducted according to predefined criteria and standardized EUSEC procedures (e.g., EUSEC-D-251-TRD for trading apps). There are no manufacturer-specific criteria or procedures. The criteria are transparent and apply to all products in the same product category, ensuring that no competitor is disadvantaged.

The goods are either purchased from the manufacturer/supplier, an agency commissioned by the manufacturer/supplier, a partner (solely for the necessary duration; goods are returned afterward), or obtained free of charge by the editorial team (e.g., an app from the app store). The selection of the goods to be reviewed is made internally by the editorial team. Manufacturers or suppliers are not permitted to influence the reviews unless a counterstatement, statement, or objection is objectively justified. There is no obligation to obtain a seal of approval and no obligation to conceal a result—apart from so-called beta reviews, in which unfinished products or offers not yet intended for the market are tested.

As a professional, Europe-wide online medium, we regularly receive invitations from manufacturers to various press events, which are disclosed transparently on an annual basis.

Process Overview

The effort required for our assessments, tests, or certifications is high to very high. Depending on the project, it can take several weeks or months until the results are published. After a thorough planning phase, the auditors at BaySec – Bayerische Gesellschaft für Cybersicherheit mbH (Bavarian Society for Cybersecurity) develop a concept and acquire the goods anonymously, provided it is legally permissible. Any deviations from this procedure are transparently documented in the respective report. The results are then published by BaySec – Bayerische Gesellschaft für Cybersicherheit mbH.

https://eusec.net/en/wp-content/uploads/sites/6/2025/05/DE_rating-test-process.jpg

Diagram: Overview of the evaluation process.

BaySec – Bayerische Gesellschaft für Cybersicherheit mbH (Bavarian Society for Cybersecurity) conducts assessments, tests, and certifications on a wide range of digital and networked products. The following descriptions provide an overview of the general assessment process.

Idee

Various sources can be used when developing evaluation ideas:

  • Inclusion of reader suggestions and feedback
  • Inclusion of discussions on social media
  • Inclusion of bestseller categories in online shops
  • Incorporation of current research findings
  • Inclusion of relevant legislative changes
  • Inclusion of news, blogs and articles
  • Involving internal discussion with employees

These sources serve both to identify new ideas and to derive suitable criteria.

Planung

As part of the planning process, a project description and a preliminary plan are prepared. We also consider exemplary standards in the respective field. If necessary, coordination with other organizations takes place.

Beschaffung

When BaySec – Bayerische Gesellschaft für Cybersicherheit mbH (Bavarian Society for Cyber ​​Security) acts as an independent assessment provider, the assessment objects (e.g., apps, smart devices) are procured anonymously. Registration takes place under a pseudonym, provided it is legally, technically, or contractually permissible.

If a provider commissions an evaluation, BaySec – Bayerische Gesellschaft für Cybersicherheit mbH (Bavarian Society for Cyber ​​Security) also procures the items to be evaluated anonymously, if possible. In this case, the procurement costs are passed on. Providing devices free of charge as a form of inducement is categorically rejected. If a device is provided, it will either be returned or professionally destroyed after the evaluation is completed.

Veröffentlichung

Manufacturers are given a reasonable period of at least two weeks to submit a statement if the overall score is 2.6 or lower. We do this to avoid any potentially unjustified negative impact on the manufacturer/supplier. This statement will be carefully reviewed for objectivity and, if appropriate, incorporated in a suitable manner, such as by adding it to the report.

Manufacturers have no influence on procedures, criteria and evaluation

BaySec – Bayerische Gesellschaft für Cybersicherheit mbH (Bavarian Society for Cyber ​​Security) can be commissioned to conduct an assessment for a fee. The following measures are taken to ensure that the assessments are objective, fair, and transparent:

  • Each report undergoes editorial review and several quality assurance stages.
  • The criteria used in the procedure will be transparently disclosed in the report.
  • The client’s identity will be published.
  • Advertisements and editorial content are strictly separated in all online and offline media to prevent any undue influence.
  • In comparative assessments or tests, the selection criteria for the goods and services included are disclosed.
  • If advertising with results, trademarks or other identifying marks is permitted, the conditions and any fees are clearly stated.
  • If any costs are incurred, they must be paid in advance and are therefore independent of the later outcome.
  • All assessments, tests or certifications are carried out professionally, and the criteria, procedures and assessments are disclosed.
  • Manufacturers have no influence on procedures or criteria. The exception is objectively justified feedback following a fairness review.
  • The assessments, tests, or certifications are carried out based on predefined criteria and procedures.
  • There are no manufacturer-specific criteria. The same criteria apply to all products in the same category.
  • The procedures are reviewed and adjusted annually.
  • Subjective methods are supplemented by objective measures wherever possible.
  • The assessment, test, or certification objective is communicated transparently, and the criteria are professionally sound in relation to the objective.
  • Before a report is published, the manufacturer is informed of the results if the overall rating is not good or very good. The manufacturer is then given the opportunity to submit a counterstatement and/or comment.
  • BaySec will not accept any benefits that could impair its freedom of decision-making. Otherwise, disclosure will follow.

© BaySec – Bayerische Gesellschaft für Cybersicherheit mbH – All rights reserved.

Any use of the reports, texts, articles, documents, graphics, and other works beyond the regulations linked below, in particular advertising, commercial, or business use, requires express written consent and may be subject to a fee. Please contact BaySec – Bayerische Gesellschaft für Cybersicherheit mbH at license(at)eusec.net .

The terms of use and licensing, as well as legal information, can be found at:

https://eusec.net/en/license-and-conditions/

Stoißberg 79, 83454 Anger

info@eusec.net

+49 (0)8641 6270010