Bricksforge
Germany · bricksforge.io · 14 vendors
Resilience scores
- Digital Sovereignty: 21
- Digital Resilience: 4
- Financial Resilience: 4
Technology vendors
- Bricks Builder — Germany
- Host Europe GmbH — Germany
- Vultr — Technology — United States
- and 12 more
Services catalogue
1 service in catalogue across 1 category; runs on 14 sub-vendors.
- Bricksforge
Insights
Last updated 2026-08-12 · revision 1
14 direct vendors, 118 subvendors
Direct vendors by controlling owner country (sample)
- United Kingdom: 1
- Germany: 3
- Bangladesh: 1
Subvendors by controlling owner country (sample)
- United Kingdom: 2
- Finland: 2
- Australia: 2
Migration Readiness: 4/10
Assessed by AI based on technology stack characteristics (cloud-native vs legacy, containerization, microservices), regulatory environment, data residency requirements, financial stability, and vendor lock-in risks. The score ranges from 0-10, where higher scores indicate better readiness for technology migration.
Bricksforge's migration readiness is assessed as medium-low, largely due to its current architectural setup and significant data gaps. The internal tech stack, centered around 'WordPress' and 'Bricks Builder' hosted on 'All-Inkl', suggests a more traditional, potentially monolithic architecture rather than a cloud-native or microservices-based approach. This type of setup typically increases the complexity and effort required for migration to modern cloud environments. The reliance on 'All-Inkl' as a single web hosting provider represents a considerable vendor lock-in risk for its core infrastructure, which would be a primary challenge during any migration effort. While the company utilizes modern key technologies like Vue 3 and OpenAI API, these are primarily application-level and do not mitigate the underlying infrastructure's migration complexity. The lack of specified data residency requirements and regulatory environment information introduces significant unknowns that could lead to unforeseen complexities and costs during a migration. Furthermore, the absence of data on financial stability (revenue concentration, growth history) makes it impossible to assess the company's capacity to fund a potentially costly and resource-intensive migration. The 'Total Services: 18' from vendors across diverse countries, while offering some options, also implies a complex web of dependencies that would need careful management during a migration, even if 'Total Vendors: 0' is stated for direct contracts.
Compliance
7 in-scope frameworks identified; showing 3.
German VAT — Compliant
Bricksforge has a registered German VAT ID (DE316824826) as disclosed in the Legal Notice, demonstrating compliance with German VAT registration requirements. The Terms and Conditions state that displayed prices are net prices with VAT shown at checkout, consistent with German VAT law requirements. For digital services sold to EU consumers, the EU VAT OSS (One Stop Shop) rules may apply. Risk is Low as VAT registration is confirmed and pricing practices appear compliant.
Evidence: https://bricksforge.io/legal-notice/, https://bricksforge.io/terms-and-conditions/
GDPR (source) — Partially Compliant
Bricksforge is operated by a German sole trader (Daniele De Rosa / Codepa) headquartered in Saarbrücken, Germany — an EU member state. GDPR is therefore universally and unconditionally applicable. The company processes personal data of website visitors, newsletter subscribers, customers (name, email, payment data), and potentially end-users of the plugin's Pro Forms feature. Positive compliance signals include: a published GDPR-aligned privacy policy citing correct legal bases (Art. 6(1)(a), (b), (c), (f) GDPR), reference to TTDSG (German Telecommunications-Telemedia Data Protection Act), a Data Processing Agreement (DPA) with their hosting provider All-Inkl, SSL/TLS encryption, and documented data subject rights. However, risk remains Medium because: (1) no Data Protection Officer (DPO) appointment is publicly documented (though likely not mandatory for a micro-enterprise), (2) no Records of Processing Activities (RoPA) are publicly disclosed, (3) third-party processors such as SendGrid (US-based) are used for newsletters — cross-border transfer mechanisms (SCCs/adequacy decisions) are referenced but not fully detailed, (4) the plugin's Pro Forms feature may enable customers to collect personal data, raising potential data processor obligations for Bricksforge, and (5) no independent GDPR audit or certification is evidenced. The risk is not High because the company is a micro-enterprise with limited data processing scope, has published a substantive privacy policy, and operates in a well-regulated German legal environment.
Evidence: https://bricksforge.io/data-privacy/, https://bricksforge.io/legal-notice/, https://bricksforge.io/terms-and-conditions/, https://all-inkl.com/datenschutzinformationen/, https://gdpr-info.eu/
EU Consumer Rights Directive — Compliant
The EU Consumer Rights Directive (2011/83/EU) and its German implementation (including §§ 327 ff BGB for digital products, effective January 2022) apply to B2C digital product sales. Bricksforge explicitly references these provisions in its Terms and Conditions, including: statutory right of withdrawal for EU consumers, digital product-specific rules, refund policy, update obligations (security updates, at least 2 years for lifetime licenses), and defect rights. The Terms and Conditions are published in both English and German, demonstrating awareness of German consumer law obligations. Risk is Low as the company demonstrates clear awareness and implementation of these requirements.
Evidence: https://bricksforge.io/terms-and-conditions/, https://bricksforge.io/revocation-instruction/
Financials
Financial Resilience Score: 4/10
Bricksforge operates as a German sole proprietorship (Einzelunternehmen) owned by Daniele De Rosa, with no obligation to publish statutory financial statements. Consequently, no revenue, EBIT, equity, or headcount figures are publicly available. The assessment is therefore qualitative only. On the positive side, the business appears to benefit from a very lean cost structure typical of a digital-only, solo-founder software operation, with no inventory or significant fixed costs. It has established a strong niche brand within the Bricks Builder WordPress ecosystem, with endorsements from prominent community figures and a diversified pricing model (Starter, Premium, Ultimate, Lifetime) that captures multiple willingness-to-pay segments and generates recurring subscription revenue. However, the business carries substantial structural risks that limit its resilience score. It has extreme platform concentration risk, as 100% of its value proposition depends on the continued success and API stability of a single third-party product (Bricks Builder). Key-person risk is acute given the sole-proprietor structure, and the legal form entails unlimited personal liability for the owner. Lifetime licenses create a long-tail support obligation without corresponding future revenue, and there is no financial transparency for external stakeholders. On balance, the business appears operationally viable and possibly profitable, but its narrow foundation and lack of corporate protection warrant a moderate-to-below-average resilience score.
Key strengths: Low overhead digital-only cost structure, Strong niche brand in Bricks Builder ecosystem, Recurring annual subscription revenue, Diversified pricing tiers (Starter to Lifetime), Product-led growth via 7-day free playground, Active development with consistent feature releases since 2022
Risk factors: Extreme platform concentration on Bricks Builder, Key-person risk tied to sole founder Daniele De Rosa, Unlimited personal liability under sole-proprietor legal form, Lifetime-license support obligation without recurring revenue, Small-team execution and support scaling risk, FX/tax complexity across EU OSS/VAT-MOSS and US sales tax, Zero public financial transparency
Revenue by product/service
- Bricksforge Plugin (Starter/Premium/Ultimate/Lifetime licenses): 100%
Workforce by country
- Germany: 1
Signed-in users can see whether their own company is exposed to this vendor's disruption, plus the full sub-vendor list and country breakdowns, every in-scope compliance framework plus gaps and next steps, and alerts when any of it changes.