Privacy & security
Your operational data is sensitive, and we treat it that way.
Your data is isolated
Every workspace's data is strictly separated. Users only ever see their own workspace's loads, documents, drivers, and invoices — isolation is enforced on every request.
Encryption
Traffic is HTTPS-only. The database and document storage are encrypted at rest, and document downloads use short-lived signed links rather than public URLs.
Access control
Access is role-based: owners, admins, dispatchers, accountants, and viewers each see and do only what their role allows. The workspace owner controls who is invited and what they can do.
Drivers
A driver's link is theirs and does not expire, but it only ever opens the loads they are actually assigned to. Drivers never get an account and see nothing else in your workspace. Revoke a link from the driver's card and it stops working at once.
Your control
You can deactivate a teammate's access at any time, disconnect a mailbox (which revokes our access), and export or delete data. The owner export in Settings contains JSON business records and document metadata, not original PDF/photo files or every stored event. Original documents are downloaded separately. The JSON export remains available after payment failure/cancellation within retention; selected-document ZIP export is unavailable while the account is blocked.
You explicitly send invoices and correspondence. The service also sends automatic operational messages, such as POD reminders and billing notices, under the existing consent and delivery rules. Questions about privacy? Contact support and see our Privacy Policy and Terms of Service.