Skip to content
Failure to comply with the HinSchG can result in fines of up to €50,000
HinSchG Meldungen - Whistleblower-Meldestelle HinSchG Meldungen - Whistleblower-Meldestelle
  • HinSchG
  • Law
  • Solutions
  • Tariffs & Prices
  • contact
  • Instagram
  • Linkedin
Log in
No account yet? Create Account
  • Deutsch
  • English
HinSchG Meldungen - Whistleblower-Meldestelle HinSchG Meldungen - Whistleblower-Meldestelle
  • HinSchG
  • Law
  • Solutions
  • Tariffs & Prices
  • contact
  • Deutsch
  • English
Search
Log in Create Account
Cart
0 0 items
Access Denied
IMPORTANT! If you’re a store owner, please make sure you have Customer accounts enabled in your Store Admin, as you have customer based locks set up with EasyLockdown app. Enable Customer Accounts
Legal obligations

Operation of an internal or external whistleblower reporting point in accordance with the HinSchG

Companies with more than 50 employees are generally legally obligated to fully and timely implement the requirements of the Whistleblower Protection Act. Furthermore, financial institutions and companies subject to anti-money laundering regulations are also required to establish a reporting channel for whistleblowers, regardless of their number of employees. Municipalities with over 10,000 inhabitants are also affected by the legislation.

A professionally operated whistleblower reporting center protects not only whistleblowers but also the company itself: It prevents liability risks for management and supervisory bodies and enables potential violations to be identified early on – before they result in legal or public consequences.

Internal reporting office for employees with 50 or more

As soon as your company has 50 or more employees, you are legally obligated to establish an internal whistleblower reporting center. The final transition period ended on December 17, 2023 – companies without an appropriate whistleblower structure have been in violation of applicable law since then.

Appointment of a reporting office officer

To operate the whistleblower center, a responsible person or department must be appointed to review and process incoming reports. This can be done internally or externally—for example, by an ombudsman or a specialized service provider.

Legally compliant tip-off handling

Every tip received must be treated with the utmost confidentiality. The identity of whistleblowers is protected by law. Furthermore, all processes must fully comply with the requirements of the GDPR to ensure data protection and legal certainty.

Establishment of protected reporting channels

Companies are required to provide confidential and protected channels for reporting information – both in writing and verbally, such as by telephone or voicemail. Personal discussions must also be possible upon request. All reporting channels must be technically and organizationally secure to prevent unauthorized access.

Objective processing of incoming tips

The department responsible for handling reports must be able to act completely independently. It must not be subject to any instructions and must examine reports impartially and objectively. Conflicts of interest—for example, within internal departments such as Compliance—must be avoided at all costs to maintain the integrity of the reporting process.

Compliance with legal processing requirements

After receiving a tip, an acknowledgement of receipt must be sent to the person providing the tip within 7 days. Feedback on the status or outcome must be provided within 3 months at the latest. Furthermore, all tips must be documented in compliance with data protection regulations and retained for a period of at least 3 years.

Creation of clear regulations

The whistleblower system should be transparently defined in an internal procedural instruction or whistleblower policy. These must clearly and comprehensibly define the reporting channel, existing protective measures, and the responsible contact persons – to ensure legally compliant processes and build trust among employees.

Establishment of a lived error culture

Company management is responsible for creating a framework that effectively protects whistleblowers from reprisals. At the same time, an open, trusting culture of error should be fostered so that employees can report grievances without fear of negative consequences.

Integration into compliance and risk management

The internal reporting center should not be viewed as an isolated element, but rather as an integral part of the overall compliance system. Close integration with risk management and internal control mechanisms strengthens its effectiveness and creates sustainable structures for detecting and preventing violations.

Duty to control & supervise

Company management is obligated to regularly review whether the internal reporting office is operating effectively and in compliance with the law. A lack of or inadequate monitoring may be considered a breach of supervisory duties under Section 130 of the German Administrative Offenses Act (OWiG)—and thus pose significant personal liability risks for managing directors.

Transparency & training requirement

All employees must be clearly and understandably informed about the existence, purpose, and potential uses of the internal reporting center. Furthermore, professional training of the responsible reporting center officers is required by law – this is the only way to ensure legally compliant and trustworthy reporting.

Continuous optimization & evaluation

The effectiveness of the internal whistleblower system must be reviewed regularly. In the event of legal changes or operational changes, the system must be adapted accordingly – this is the only way to ensure that the reporting system remains legally compliant, practical, and effectively embedded in everyday company operations.

Figures - Data - Facts

What you should know about the EU Whistleblower Protection Act

The EU Whistleblower Protection Act imposes clear requirements for companies and organizations. Those who are well informed can minimize liability risks and act with legal certainty. The following facts and figures provide a concise overview of the most important obligations, deadlines, and thresholds – presented in a clear and practical manner.
+50

Employees in the company

The Whistleblower Protection Act requires the establishment of an internal reporting center for companies with 50 or more employees. Companies must take all necessary technical and organizational measures to ensure a secure, confidential, and legally compliant reporting process.
2023

Expiry of the implementation period

Since July 2, 2023, companies with at least 250 employees have been legally obligated to establish an internal whistleblower office. For companies with 50 or more employees, this obligation applies no later than December 17, 2023. Compliance with these deadlines is essential to avoid fines and liability risks.
50,000€

Risk of fines for violations

Companies that fail to implement the legal requirements of the Whistleblower Directive or fail to take the necessary measures risk significant fines. Violations can result in fines of up to EUR 50,000 – a significant risk that can be avoided through timely compliance.
+50%

anonymous reports

According to studies, over half of all whistleblowers use anonymous channels to report misconduct. Companies are responding by increasingly integrating secure and anonymous whistleblower systems into their compliance structures – a crucial step toward increasing trust and willingness to report.
Invalid password
Enter
HinSchG Meldungen - Whistleblower-Meldestelle
Your compliance partner for the operation and establishment of internal and external whistleblower reporting points in accordance with the Whistleblower Protection Act (HinSchG).

Pursue

  • Home
  • Whistleblower Protection Act
  • Outsourcing model
  • PaaS model
  • Tariffs & Prices
  • contact
  • imprint
  • Terms and Conditions
  • Privacy Policy

Pursue

  • Home
  • Whistleblower Protection Act
  • Outsourcing model
  • PaaS model
  • Tariffs & Prices
  • contact
  • imprint
  • Terms and Conditions
  • Privacy Policy

External reporting center - outsourcing model

  • Reporting office for 1-49 employees
  • Reporting office for 50-99 employees
  • Reporting office for 100-249 employees
  • Reporting office for 250-499 employees
  • Reporting office for 500-1000 employees
  • Reporting point for +1000 employees
  • All outsourcing models

External reporting center - outsourcing model

  • Reporting office for 1-49 employees
  • Reporting office for 50-99 employees
  • Reporting office for 100-249 employees
  • Reporting office for 250-499 employees
  • Reporting office for 500-1000 employees
  • Reporting point for +1000 employees
  • All outsourcing models

Internal Reporting Center - PaaS Model

  • Internal whistleblower platform solution (PaaS)
  • E-learning module “Compliance & Whistleblowing”
  • E-learning module "Data Protection"
  • E-learning module "Information Security"
  • E-learning module "Artificial Intelligence (AI)"
  • All solutions & modules

Internal Reporting Center - PaaS Model

  • Internal whistleblower platform solution (PaaS)
  • E-learning module “Compliance & Whistleblowing”
  • E-learning module "Data Protection"
  • E-learning module "Information Security"
  • E-learning module "Artificial Intelligence (AI)"
  • All solutions & modules
  • American Express
  • Apple Pay
  • Google Pay
  • Klarna
  • Maestro
  • Mastercard
  • PayPal
  • Union Pay
  • Visa
  • Instagram
  • Linkedin
© 2025 HinSchG Meldungen - Whistleblower-Meldestelle. Powered by Shopify
  • Choosing a selection results in a full page refresh.