TK-App security concept
Data about the condition of a person’s health are some of the most sensitive information there are and require the best protection. Consequently, we have a great responsibility to our insurees who use the TK-App and exchange these highly sensitive data with us. For this reason, we have not chosen the simplest security concept for the TK-App but the most secure solution.
Security check of your device
When you log in to the TK-App a check will be made whether your device meets the security requirements. This includes checking whether your device’s operating system is classified as secure. This is not the case for devices that have been rooted or jailbroken, for example. If the check is unsuccessful, you will not be able to use the TK-App. This is the only way we can avoid the misuse of our insurees’ data.
Activation code
Before you can use the TK-App you require a unique activation code. We will send this by letter to the postal address we have on record.
Device registration
Using your personal eight-figure activation code you can directly connect your own mobile device and enable initial access to the TK-App. This device registration is only approved for terminals that are deemed to be secure and that cannot be manipulated (for example, no mobile devices that have been rooted or jailbroken).
2-factor authentication
In order to be able to use the TK-App, the usual login data (user name and password) are insufficient. You also have to register your mobile device for the app, as detailed above. Once you have registered, entering the password or - if it is available and has been set up - fingerprint identification or facial recognition will be sufficient for regular log ins. In this manner we ensure that it is only possible to access your data with the mobile device you have authorised.
If your mobile device has a fingerprint sensor and you have saved at least one fingerprint, from Version 1.9 onwards you will be able to activate the login function using a fingerprint in the TK-App settings. If you have an iPhone X or above, you can use Face ID to log in.
Automatic logout
As is also the case for many banking apps, you will be automatically logged out after a few minutes. This is intended to prevent direct access to open data, for example, in the event of theft.
Encryption and data storage
When using the TK-App, data transfers are protected by encryption in accordance with the directives of the Bundesamt für Sicherheit in der Informationstechnik [Federal Office for Information Security]. The app is also protected against manipulation and no sensitive or personal data will be stored on the smartphone.
Benefits