Audit-proof without complexity

FileLock

FileLock makes your business-critical data tamper-proof, is compliant with legal requirements, and is audit-proof in accordance with GoBD and KPMG-certified. The solution integrates seamlessly into existing Windows servers and reliably protects data from tampering or accidental deletion.

WORM Protection Made Easy

How FileLock protects your data long-term and tamper-proof

FileLock adds true WORM functionality to your Windows file system, thereby meeting international compliance requirements. The solution operates transparently in the background without altering your IT infrastructure.

Software-based protection for immutable data

FileLock extends standard Windows file systems (NTFS and ReFS) with audit-proof WORM functionality. Written data is automatically protected and cannot be modified or deleted once the write operation is complete. FileLock thus complies with legal requirements such as GoBD, SEC 17a-4, and industry-specific regulations without requiring special hardware
or system changes.

Technical Fundamentals

  • WORM Functionality: Write Once, Read Many – at the file system level
  • Retention Modes: Single File Retention (SFR) & Directory Level Retention (DLR)
  • Compliant Replication: Audit-proof copies to secondary systems
  • Privileged Delete: Optional special permission for authorized deletion operations
  • Hardware-independent: Deployment on physical and virtual Windows servers
Simple and digital

Manage License

Sign up for our customer portal

Features you can count on

FileLock combines compliance, security, and easy management

As a software-only solution, FileLock offers full WORM functionality without the need for specialized hardware. It is ideal for any business that requires legally compliant and long-term secure data storage.

Audit-proof
Data Archiving

Once written, files are automatically made read-only. All archived data remains protected throughout the entire retention period—regardless of where it is stored.

Flexible
Retention Management

Choose between single-file retention and directory-level retention. You control how long data is retained, ensuring compatibility with common applications.

Compliance without
hardware-based login

FileLock runs on standard Windows servers; no proprietary storage system is required. This allows you to remain flexible, scalable, and independent of hardware vendors.

Compliant
Replication

Create audit-compliant copies on a secondary system for disaster recovery and legally compliant data backup. Changes are restricted to the replicated systems.

Greater efficiency. Greater compliance.

Why Companies Choose
FileLock

FileLock protects business-critical data from tampering and ensures compliance with legal retention requirements without placing an additional burden on IT.

Compliant with regulations, flexible, and hardware-independent

Your Benefits at a Glance

A Solution for All Industries

FileLock enables tamper-proof archiving that complies with international standards and leverages your existing Windows infrastructure.

 

With its intuitive administration, flexible retention management, and audit-proof replication, FileLock is a future-proof and cost-effective solution for businesses of all sizes.

Technically sound. Versatile.

Here's how FileLock integrates seamlessly into your Windows system

FileLock is software-based, easy to install, and can be easily integrated into existing server infrastructures.

System Architecture & Integration

FileLock is installed directly on existing Windows servers—whether physical or virtual. The WORM volume appears as an additional drive in the system and can be used as usual.

Protection is applied automatically, without the need to modify any applications. At the same time, FileLock is compatible with common archiving solutions and supports audit-proof storage in accordance with regulatory requirements. Administrative overhead and integration remain minimal.

Security and Management Features

  • GoBD- and SEC 17a-4-compliant WORM protection
  • Two layers of filtering for maximum security
  • KPMG-certified
  • Support for DMS, ERP, email, and PACS data
  • Automatic or API-controlled WORM activation
  • “Privileged Delete” option for controlled deletion processes
  • Deployment in clusters and high-availability environments
Voices from the field

Trust built on experience

FileLock has been used for many years in critical industries around the world—it is reliable, compliant, and stable.

“The software is incredibly streamlined and offers all the features we need. The trial installation and configuration took just 20 minutes and went completely smoothly, without any assistance from GRAU DATA Support. Another great advantage of FileLock is its hardware independence. This allowed us to choose the storage platform that best suits our needs. This is exactly how I envisioned our new archiving solution.”

Thomas Marcadal

Systems Integrator and Software Developer at Sparkasse Karlsruhe IT Services

Frequently Asked Questions

Everything You Need to Know About FileLock

Here you’ll find answers to the most frequently asked questions about FileLock. Concise, easy to understand, and to the point—so you’ll immediately know how FileLock archives your documents in an audit-proof manner.

Why is FileLock needed?

In many countries, business-critical data must be retained in an audit-proof manner for ten or more years. FileLock meets key compliance and governance requirements by providing audit-proof, tamper-proof data storage. This enables all companies to avoid legal risks and ensure that electronic data is archived in a manner that is both legally compliant and tamper-proof.

How is FileLock implemented?

FileLock can be installed without any changes to your existing IT infrastructure and integrates seamlessly with existing applications and processes. Once implemented, new data is automatically stored in an audit-proof manner.

How does audit-proof archiving work with FileLock?

FileLock converts a volume into WORM storage, ensuring that files are automatically saved in a read-only format. During the specified retention period, they cannot be modified or deleted. Data can only be deleted after the retention period has expired.

Does FileLock only protect new documents?

FileLock protects newly archived documents as well as existing data during migrations. This enables audit-compliant archiving without disrupting existing systems or processes. The solution is scalable and runs on standard Windows servers, including virtualized environments.

Is there a download available for the legal opinion?

Yes, FileLock has been audited by KPMG and certified as compliant with generally accepted accounting principles. The corresponding legal opinion is available for download.

Ready for the next step?

Talk to our experts or try out our solutions

We’d be happy to show you how GRAU DATA can make your data architecture more secure, efficient, and future-proof—either in a one-on-one meeting or through a trial version of our products.

Verifying the FileLock System Time

Starting with version 2.2.6, FileLock uses a new method to verify the system time on the FileLock system and the managed storage volume. It works on the principle of time synchronization: To compare and synchronize the FileLock system with a verified time server, your local FileLock time service requires the key provided here.

Time Sync Key

Für einen späteren erneuten Abgleich des FileLock Zeit-Service, laden Sie bitte einen neuen Zeit-Schlüssel herunter, um ihn in die FileLock GUI hoch zu laden.

Hinweis: Der dargestellte Schlüssel basiert auf der aktuellen UTC Zeit und kann dadurch nur zeitnah eingespielt werden (innerhalb von 12 Stunden). Für einen erneuten Abgleich des FileLock Zeit-Service laden Sie darum bitte einen neuen/aktuellen Zeit-Schlüssel herunter.