Skip to content
pioneerdesk.

Platform · Live

OneLog

IT management with AI agents that resolve standard cases themselves — hosted in Germany, with a tamper-evident audit log for the evidence.

A managed service provider juggles remote maintenance, ticketing, monitoring, documentation and security across five to eight separate tools. OneLog replaces the toolbox with one platform, lets AI agents take over the routine and produces the evidence as a function rather than as busywork.

The problem

Too many tools, too little evidence. NIS2 demands reliable information on devices, updates and risks — today it is compiled by hand. At the same time, most remote monitoring platforms sit in US clouds and thus under US law.

How it works

  1. 01 An agent on every endpoint (Windows, macOS, Linux) delivers inventory, update status and metrics. Tenants are separated from each other right down into the database.
  2. 02 A group of specialised AI agents correlates events, prioritises and resolves standard cases itself; the human sees the result and intervenes only for exceptions.
  3. 03 Audit trail as a chain: every security-relevant event is chained and given a post-quantum signature. External auditors receive a signed bundle without needing access to the system.
  4. 04 Compliance output at the push of a button: NIS2 mapping, BSI reporting template, role reports.
  5. 05 AI layer without migration: via bridges, the agent layer can be placed on top of an existing third-party system without replacing everything.

Sovereignty & evidence

  • Operation and data storage exclusively in Germany (STACKIT, Schwarz Group). No US hyperscaler in the chain.
  • Pioneerdesk holds its own ISO/IEC 27001:2022 for the OneLog security management system — with zero nonconformities in the certification audit.
  • Technical and organisational measures under Art. 32 GDPR publicly documented; subprocessors disclosed.
  • Encryption throughout: storage media, transport, access tokens; signatures with Ed25519 and ML-DSA-65.
  • An honest limit: the audit trail is tamper-evident, but not a qualified timestamp under eIDAS. We are currently procuring that component.

What OneLog proves

OneLog is the oldest of our systems and the reason we hold an ISO 27001: anyone operating a platform for regulated customers must be auditable themselves. Everything we have built since — signed verification chains, tenant separation in the database, AI agents with clear limits — went into production here first.

Limits we name openly

The audit trail is secured against retrospective change and post-quantum-signed. It is not a qualified timestamp within the meaning of eIDAS; that component is bought in, not built ourselves. Key custody in certified hardware is prepared but not yet in production. We write this here because an auditor would ask anyway.

Status

Live at onelog.pro with self-registration, pricing page and trust centre. We maintain prices and feature scope only there.

Frequently asked questions

Does OneLog cover the NIS2 requirements?
OneLog is built so that the requirements of NIS2 Art. 21 — inventory, updates, logging, reporting — are covered as functions, not as after-the-fact documentation. Whether your organisation as a whole meets the requirements depends on more than one tool. This is not legal advice.
Why not a US provider if it has a data centre in Frankfurt?
Because the location of a server says nothing about whose law applies. A US provider is subject to the US CLOUD Act, even in Frankfurt. OneLog is operated by a German company in a German cloud.
Can I test OneLog alongside my existing system?
Yes. The AI layer can be placed on top of an existing third-party system via bridges. Trials and terms run via onelog.pro.

A comparable challenge on your desk?

Send us three sentences. We reply within one business day with an honest assessment — including when we are not the right partner.