Security & Compliance
Your operational data is your business. We treat it accordingly.
Data Storage & Encryption
All Customer Content—including client details, locations, quotations, and invoices—is encrypted both in transit and at rest. We utilize industry-standard AES-256 encryption for data at rest and TLS 1.2+ for all data in transit between your devices and our servers. [CONFIRM ENCRYPTION STANDARDS].
Infrastructure & Hosting
Ovelah's infrastructure is hosted on enterprise-grade cloud providers (including Cloudflare) in the Asia region to ensure low latency and high availability for our primary customer base. Our infrastructure partners maintain strict physical and logical security compliance. [CONFIRM HOSTING/AWS/VERCEL DETAILS].
Access Control & Authentication
Access to the Ovelah platform requires secure authentication. We employ role-based access control (RBAC), ensuring that your field technicians, dispatchers, and management only have access to the data necessary for their specific roles. Ovelah support personnel do not access your readable Customer Content without explicit, time-bound permission for troubleshooting.
Backups & Resilience
We perform automated, routine backups of our database infrastructure to prevent data loss in the event of hardware failure. Backups are encrypted and stored redundantly. [CONFIRM BACKUP FREQUENCY, e.g., Daily backups retained for 30 days].
Report a Security Vulnerability
If you are a security researcher and have discovered a vulnerability in the Ovelah platform, please disclose it responsibly by emailing security@ovelah.com. [CONFIRM EMAIL ALIAS]