Custom software
Applications that follow your process — not that of a standard product.
Custom software · Hamburg
Custom software development from Germany. Secure. Modern. GDPR-compliant. Built, run and maintained by people you know by name.
About us
NordTrust is a software company based in Hamburg. We build applications that follow a company's actual process — not the process of an off-the-shelf product everyone involved has to bend around.
Behind that is a small, permanent development team, extended by a network of experienced specialists for infrastructure, data protection law and interfaces to legacy systems. Lean structures instead of corporate overhead: you talk to the people writing the code, not to a ticket number.
What we do not sell is data. Yours sits on servers in Germany, it is not passed on, and it does not train anybody else's model.
Services
We take a project on completely or not at all — analysis, build, security and operations from one source. Pricing on request, always fixed per stage.
Applications that follow your process — not that of a standard product.
Customer history, leads and appointments in one place, with rights per role.
Your customers see their own status — no phone call, no spreadsheet attachment.
Rosters, time accounts, leave and payroll documents — on the phone as well.
Language and text models with a filter in front of the interface, run in-house.
Recurring manual work becomes a traceable nightly run.
Our own servers in northern Germany instead of rented space on other continents.
Your existing systems stay — we connect them instead of replacing them.
Security
Eight points that come at the beginning of a project here, not at the end as a retrofit. Every one of them is named in the quote and verifiable in operation.
Insured € 250,000
With this way of building, a data breach is close to impossible: separated security zones, encrypted channels, every access bound to one person and one device.
But “close to” is no foundation for a company to park its risk on. That is why our work is backed by cover from a well-known German insurer — € 250,000 of cover, explicitly including damage that occurs at your customers. Not just claims against us.
What applies in an individual case is set out in the contract and the policy, both of which you see beforehand. That we stand behind our work applies in every case.
This overview is a summary, not an insurance certificate. The project contract and the policy are binding; you receive both in full before entering into a contract.
From practice
| Employee | Location | Mon | Tue | Wed | Thu | Fri | Sat | Target | Actual |
|---|---|---|---|---|---|---|---|---|---|
| A. Meinke | Location 04 | 09–18 | 09–18 | off | 11–20 | 11–20 | 10–16 | 38,5 | 39,0 |
| B. Kroll | Location 04 | 11–20 | off | 09–18 | 09–18 | 09–16 | off | 32,0 | 31,5 |
| C. Sander | Location 11 | Leave | Leave | Leave | Leave | Leave | off | 38,5 | 38,5 |
| D. Wiechmann | Location 11 | 09–18 | 09–18 | 11–20 | off | 11–20 | 10–16 | 38,5 | 40,25 |
| E. Tholen | Field sales | 08–17 | 08–17 | 08–17 | 08–17 | 08–15 | off | 40,0 | 39,75 |
Anonymised illustration with sample data · no real people, locations or amounts
From practice
For a telecommunications retailer we run a company portal that brings together rostering, time tracking, commission accounting and field sales management across 16 locations — grown in daily operation, without a single day of downtime.
Personal data never leaves the system: personnel file documents, photos and settlement lists are locked down at role level and technically prevented from appearing in reports or exports.
We build software we would have to use ourselves every day. That is the hardest quality benchmark I know.Christian Opitz · CTO
How a project runs
Every stage ends with something you can hold: a document, a running version, a test report.
We look at how your process actually runs — not how it is documented.
Data model, roles, permissions and threat model are agreed in writing.
A running version to click through every two weeks, not a screenshot.
Static analysis, load test, permission review and a report your data protection officer can read.
Maintenance, backups and further development — with a named contact instead of a ticket number.
Team
A small, permanent team in Hamburg — extended by a network of experienced specialists when a project calls for it. No rotating subcontractors.
Managing Director
Responsible for quotes, contracts and commitments. First point of contact for everything that is not technical.
CTO
Responsible for architecture, security and operations. Writes code — and reads every line that ships.
Standing network
A young development team, plus experienced freelancers for specialist questions: infrastructure, data protection law, interfaces to legacy systems.
Write two sentences about what you have in mind. You will get an honest assessment of whether and how we can help — even when the answer is that you do not need us for it.