Security
Last reviewed: pilot release.
Workspace isolation
Every customer, site, asset, job and document belongs to a single company workspace. Access rules are enforced in the database, so a signed-in user can only read or change records belonging to their own workspace.
Access control
Accounts hold one of four roles — owner, admin, office or engineer. Roles are stored separately from user profiles so they cannot be self-assigned through the app. Engineers see only the jobs assigned to them in the mobile workspace.
Transport and storage
All traffic is served over HTTPS. Data is held in a managed EU-region PostgreSQL database with automated backups provided by our hosting platform.
Authentication
Sign-in is by email and password or Google. Passwords are never stored by Air Logic Pro; they are handled by the managed authentication service.
What we do not claim
Air Logic Pro is pilot software. We do not currently hold ISO 27001, SOC 2 or Cyber Essentials certification, and we do not claim certified compliance templates. Ask us for the current position before relying on any specific control.
Reporting a vulnerability
Email security@airlogic.pro with details and we will acknowledge within two working days.