search

Billit Trust Center

Certificates & licenses

Product conformity, security & compliance

Security controls

Security internal controls

International partners

Trusted by recognized industry members

Frequently Asked Questions

FAQs related to conformity, compliancy and security

Certificates & licenses

A list of internationally recognized Peppol /e-invoicing, security and compliance certifications and licenses

Certified Global Peppol Access Point Publication Peppol.org
Europe: Certified Peppol Access Point Publication European Commission
Belgium: Certified Peppol Access Point Publication BOSA Belgium
France: Approved Plateforme Agréé Publication PA
Malaysia: Certified Peppol Access Point
The Netherlands: Certified Peppol Access Point Publication service providers
USA: DBNA Certified Member DBNA member list
ISO / IEC 27001 : 2022 certificate Download ISMS22 certificate
GLEIF Legal Entity Identifier (LEI) certificate Download LEI certificate
Licensed payment institution in EU (regulated under PSD2 - National Bank of Belgium) View list from NBB

 

Security controls

A non-exhaustive list of controls:

  • All commits go through mandatory code and security review, along with examination by static analysis.
  • Our architecture implements safe-by-default principles to consolidate user input, authorization, and business logic.
  • All data access and mutation goes through a framework utilizing strong typing and parameterization to eliminate SQL Injection attacks, as well as enforcing the presence of an anti-CSRF token prior to any data mutation.
  • We utilize a strict Content Security Policy and a safe-by-default templating language to effectively neutralize Cross-Site Scripting (XSS).
  • We encrypt all network communications with SSL/TLS accompanied HTTP Strict Transport Security (HSTS), including being HSTS preloaded in most major browsers.
  • All requests pass through multiple rate-limiting methods to protect against brute-force attacks.
  • We don't store passwords; we store hashes
  • Two-factor authentication is available to further restrict access to accounts.
  • Role-based access control allows for granular permissions for team members.

Partners

See below the shortlist of international partnerships. See many more on our partner page

 

Memberships

 

Agoria: Billit is a member of the organization Agoria , which unites more than 2000 Belgian technology companies from various sectors.

Beltug: Billit is a member of Beltug, the Belgian association of CIOs and leaders in digital technology.

Business Expert Group (BEG): This organization brings together parties such as Billit to find practical solutions around e-invoicing and make arrangements regarding legal obligations. The BEG, in collaboration with governments and the IT sector, works on building broad support for the introduction of electronic invoicing in Belgium.

CEN/TC 434: This technical committee is part of the European Committee for Standardization (CEN) and develops standards in electronic invoicing, including the European standard EN 1631-1. TC 434 also develops related documents according to the European Directive 2014/55/EU. Billit participates in this committee.

CEN/TC 440: TC 440 focuses on developing standards for e-procurement. It supports information flows and electronic processes in the financial and physical supply chain from start to finish. Billit is also a member of this technical committee.

DBNA: The Digital Business Networks Alliance is an open network to exchange B2B documents securely and efficiently in the US. With support from various sectors and members like Billit, DBNA allows American companies to share documents such as e-invoices.

FNFE-MPE: Billit is a member of the French service providers group FNFE-MPE. This organization unites everyone involved with electronic invoicing and procurement to discuss ideas and outline policies.

GENA: As an international trade association, GENA represents a broad and diverse community of service providers from various sectors such as financial services, technology, and network services. Billit is a member of the GENA organization.

OpenPeppol: The OpenPeppol group brings together members from the public and private sectors to develop, maintain, and implement Peppol requirements. Billit participates democratically and transparently in various working groups or pilot projects such as critical infrastructure, ‘Enhanced B2B’, the VIDA pilot project, or International Peppol invoicing.

UBL.be: Billit is a member of UBL.be. UBL.BE is a Belgian non-profit organization. Their goal is to support customers and users in implementing e-invoicing. The focus is on using and processing e-invoices in a secure and compatible manner, specifically supporting the use of Peppol.

UBLReady: Billit is also recognized by the Dutch Peppol Authority and is authorized to carry the UBL Ready certification after successfully completing the UBL chain test.

FAQ's about trust and compliancy with Billit