Den Danske Folkekirke (Folkekirken.dk)
Denmark · owned by Independent (State-recognized national church under the Danish Ministry of Ecclesiastical Affairs) (Denmark) · folkekirken.dk · 20 vendors
Den Danske Folkekirke (the Church of Denmark) is Denmark's national Evangelical Lutheran church and its largest religious community and membership organization. It serves as an open community for individuals across all of life's major events — including baptism, confirmation, weddings, and funerals — as well as annual religious holidays. The organization is headquartered in Åbyhøj (Aarhus) and operates across Denmark through 10 dioceses (stifter) and hundreds of local parishes.
Resilience scores
- Digital Sovereignty: 35
- Digital Resilience: 7
Technology vendors
- Dandomain A/S — Technology — Denmark
- jQuery Foundation — Technology — United States
- Meta Platforms, Inc. — Technology — United States
- and 17 more
Insights
Last updated 2026-03-17 · revision 3
20 direct vendors, 302 subvendors
Direct vendors by controlling owner country (sample)
- Germany: 2
- Japan: 1
- Denmark: 1
Subvendors by controlling owner country (sample)
- Brazil: 1
- United States: 192
- Russia: 1
Migration Readiness: 4/10
Assessed by AI based on technology stack characteristics (cloud-native vs legacy, containerization, microservices), regulatory environment, data residency requirements, financial stability, and vendor lock-in risks. The score ranges from 0-10, where higher scores indicate better readiness for technology migration.
Den Danske Folkekirke's migration readiness is assessed as moderate to low, primarily due to several significant challenges. The core technology stack, centered around Neos CMS (a PHP-based open-source content management system), suggests a more traditional application architecture that is not inherently cloud-native, containerized, or microservices-based. A migration to a modern cloud environment would likely require substantial re-platforming or refactoring efforts, increasing complexity and cost. A major impediment is the 'Unknown' vendor lock-in risk; without clear data on existing vendor contracts, dependencies, and exit clauses for the 'Total Services: 53', accurate migration planning and cost estimation are severely hampered. The geographic diversity of vendors, while beneficial for resilience, could add complexity to contract renegotiations during a migration. Furthermore, the strict regulatory environment (GDPR, NIS2 Directive) and data residency requirements (primarily Denmark/EU) impose significant constraints on cloud provider selection and deployment regions, adding layers of compliance complexity and potentially higher costs to any migration strategy. The financial capacity to fund a large-scale migration is also unclear, given the reported 'gradual decline' in membership and the absence of detailed commercial revenue data. While existing SaaS solutions like Mailchimp and Meta Pixel are already cloud-based, their integration points with the core systems would still need careful management during a broader migration. Overall, the combination of a potentially monolithic tech stack, stringent regulatory landscape, and critical unknowns regarding vendor dependencies significantly lowers migration readiness.
Compliance
2 in-scope frameworks identified; showing 2.
GDPR (source) — Assessment Required
As Denmark's national church with 4.2 million members, Folkekirken processes extensive personal data including member records, baptism/confirmation/marriage/burial records, employee data, and website analytics. Being headquartered in Denmark (EU), GDPR is mandatory. High risk due to potential €20M or 4% annual turnover fines, sensitive religious data processing, and large scale of operations. The organization's size and data processing scope create significant compliance obligations.
Evidence: https://www.folkekirken.dk/om-folkekirken/kontakt/vilkaar-og-privatlivspolitik
ISO 27001 (source) — Assessment Required
While not mandatory, ISO 27001 would be beneficial given the organization's large scale (4.2M members), extensive personal data processing, and digital presence. Medium risk because lack of formal information security management could lead to data breaches affecting millions of members, though it's not legally required.
Financials
Signed-in users can see whether their own company is exposed to this vendor's disruption, plus the full sub-vendor list and country breakdowns, every in-scope compliance framework plus gaps and next steps, and alerts when any of it changes.