FacilityNet

Denmark · owned by SWINVEST HOLDING ApS (Denmark) · facilitynet.dk · 17 vendors

FacilityNet is a digital cloud platform that provides solutions for meeting planning and canteen ordering for private and public companies. The company develops, operates, and supports systems for resource booking, meeting catering, self-service canteen payment (EPOS), and takeaway services. It offers a scalable, web-based SaaS-platform designed to streamline administrative tasks and improve daily operations for over 600 businesses and 300,000 users.

Resilience scores

Disruption prediction

FacilityNet has an estimated 11% probability of disruption in the next 6 months.

10 of FacilityNet's 17 vendors monitored for disruptions.

Technology vendors

Services catalogue

1 service in catalogue across 1 category; runs on 17 sub-vendors.

Insights

Last updated 2026-09-13 · revision 2

17 direct vendors, 226 subvendors

Direct vendors by controlling owner country (sample)

Subvendors by controlling owner country (sample)

Migration Readiness: 2/10

Assessed by AI based on technology stack characteristics (cloud-native vs legacy, containerization, microservices), regulatory environment, data residency requirements, financial stability, and vendor lock-in risks. The score ranges from 0-10, where higher scores indicate better readiness for technology migration.

FacilityNet's migration readiness is assessed as low, primarily due to a critical lack of information across key assessment areas. There is no data available on the internal tech stack (e.g., cloud-native, containerization, microservices vs. legacy architecture), which is fundamental for determining the technical complexity and feasibility of a migration. Similarly, financial stability, essential for funding a migration, is unknown. The regulatory environment is not specified, and while data residency requirements are also 'Not specified' (which could be an an opportunity if flexible), this is not confirmed. The vendor relationship data presents an ambiguity with 'Total Vendors: 0' alongside 'Total Services: 17' and detailed vendor geographic information. Assuming there are vendors for these 17 services, the actual number of distinct vendors and the associated vendor lock-in risk are unknown, which could pose significant challenges if there is high vendor concentration or complex contractual obligations. The geographic diversity of vendor HQs might offer some flexibility in vendor selection during a migration, but this is speculative without clearer data on current vendor relationships and lock-in.

Compliance

8 in-scope frameworks identified; showing 3.

ePrivacy Directive — Assessment Required

The ePrivacy Directive (implemented in Denmark via the 'Cookiebekendtgørelsen' – Executive Order on Cookies) applies to any company operating a website or digital service targeting EU users. As a technology company with a website (facilitynet.dk), FacilityNet is subject to cookie consent requirements. Risk is Medium because: (1) Datatilsynet actively enforces cookie compliance and has issued guidance and reprimands to Danish companies; (2) non-compliant cookie banners are a common enforcement target; (3) the upcoming ePrivacy Regulation (still in negotiation) may increase requirements.

Evidence: https://www.datatilsynet.dk/english/regulations/cookies, https://www.retsinformation.dk/eli/lta/2011/1148

Cybersecurity Act — Assessment Required

The EU Cybersecurity Act established ENISA's permanent mandate and introduced a European cybersecurity certification framework. For technology companies, it is relevant if their products or services are subject to EU cybersecurity certification schemes (e.g., EUCS for cloud services, EUCC for ICT products). Risk is Low currently because: (1) most certification schemes are still being developed or are voluntary; (2) mandatory certification requirements are sector-specific and not yet broadly applicable to all technology companies; (3) however, if FacilityNet's products are used in critical infrastructure, certification may become mandatory under future schemes.

Evidence: https://www.enisa.europa.eu/topics/cybersecurity-certification, https://eur-lex.europa.eu/legal-content/EN/TXT/?uri=CELEX%3A32019R0881

ISO 27001 (source) — Assessment Required

ISO 27001 is the international standard for Information Security Management Systems (ISMS). While not legally mandated, it is increasingly required by enterprise customers and public sector procurement in Denmark and the EU. As a technology company, FacilityNet handles digital assets and likely customer data, making ISO 27001 highly relevant. Risk is Medium because: (1) Danish public sector procurement increasingly requires ISO 27001 or equivalent; (2) NIS2 compliance is significantly easier to demonstrate with ISO 27001 certification; (3) no evidence of ISO 27001 certification was found, which may represent a competitive and compliance gap; (4) the Danish Business Authority and CFCS recommend ISO 27001 as a baseline for technology companies.

Evidence: https://www.iso.org/standard/27001, https://www.ds.dk/en/standards/it/iso-27001

Financials

Three-year financials

Signed-in users can see whether their own company is exposed to this vendor's disruption, plus the full sub-vendor list and country breakdowns, every in-scope compliance framework plus gaps and next steps, and alerts when any of it changes.

View the full interactive report