AI-generated photo of an open FIXIT GROUP manual

Corporate Governance | Objectives and Achievements

The group has a code of ethical business conduct. This includes effective measures for identifying and preventing breaches of competition law. The code is consistently upheld. Compliance with it is continuously monitored and promoted through structural and procedural mechanisms.

Corporate Governance – Key Areas and Objectives

Two people in a white and a dark grey shirt shaking hands over a desk

Ethics & Compliance

  • Prevention of cartels and fair competition
  • Code of Conduct for all employees
  • Data protection and IT security
     

Our objectives

  • Zero breaches per year
  • Regular training on the contents of the Code of Conduct and all internal guidelines
  • Ensuring a level of data protection that complies with the law through a range of technical and organisational measures.
  • Continuous improvement of cyber security.
AI-generated photo of an open FIXIT GROUP handbook

Sustainability Strategy & Reporting

  • ESG targets as part of the corporate strategy
  • Reporting in accordance with recognised standards (CSRD) 
     

Our objectives

  • CSRD-compliant report by 2028
  • Introduction of processes for CSRD reporting obligations
A brass-coloured padlock with a large keyhole stands on a dark grey computer circuit board

Corporate structure & control

  • Transparent decision-making processes
  • Independent control bodies
  • ESG responsibility at management level
     

Our objectives

  • ESG KPIs in management system
  • Annual update of all guidelines
  • Annual update of the risk inventory

Corporate Governance – Initiatives and Projects

The group FIXIT GRUPPE is committed to responsible corporate governance and sets clear standards in the area of governance through rigorous data protection, high levels of cyber security, transparent reporting and robust oversight bodies.

Data Protection – Transparency and Accountability

The protection of personal data is a top priority at the group FIXIT GRUPPE. We process only the data necessary for the performance of work tasks, contractual relationships and legal obligations, and implement technical and organisational measures to ensure the confidentiality, integrity and availability of the information.

Transparency and accountability are central principles of our data protection practices: employees receive clear guidelines on data processing, access rights and retention periods. Responsibilities are regulated through central data protection officers and local data controllers. These measures strengthen trust, minimise risks and ensure that personal data is handled respectfully and in compliance with the law throughout the entire group of companies.

To the privacy policy

Cybersecurity – a Europe-wide security strategy

The group FIXIT GRUPPE protects digital resources and business processes through a multi-layered security strategy that combines network defences, access controls and continuous monitoring. Staff receive regular training, and security-related guidelines – such as the use of strong passwords, phishing detection and secure data storage – are strictly enforced.

Proactive measures such as security updates, backup strategies and incident response plans ensure that disruptions are quickly contained and business operations are maintained. Reliable cybersecurity strengthens the trust of customers and partners, protects corporate assets and ensures the Group’s long-term resilience.

Risk Management System – Continuity and Trust

Risk management at the group FIXIT GRUPPE is a proactive and systematic approach to identifying, assessing and controlling operational risks. Through regular risk analyses, clear lines of responsibility and coordinated action plans, threats to processes, employees and assets are identified at an early stage and minimised. Technical safeguards, organisational guidelines and ongoing reviews ensure that risks remain under control at all times.

The aim is to safeguard business continuity and trust. Preventive measures reduce downtime, protect reputation and ensure compliance with legal requirements. An integrated approach brings together management, specialist departments and employees, promotes a risk-aware culture and provides a solid basis for decision-making to support sustainable, secure growth.