Your Factory Data, Protected
Industrial monitoring generates sensitive operational data. We treat every data point with the security it deserves.
Encryption Everywhere
TLS 1.3 for all data in transit (MQTT and HTTPS). Encryption at rest for stored data. No plain-text credentials anywhere in the stack.
Tenant Isolation
Every database query is filtered by organization ID. No customer can access another customer's data. Enforced at the database layer, not just the application layer.
Authentication & Access Control
Authentication via Clerk with session management and MFA support. Role-based access controls. API keys with scoped permissions for integrations.
Edge Security
Air-gapped OT networks at the edge (10.0.100.0/24). Tailscale zero-trust mesh VPN for remote access. No port forwarding, no exposed services.
Monitoring & Audit
Rate limiting on all API endpoints. Structured audit logging. Webhook signature verification (HMAC-SHA256). Error tracking via Sentry.
Data Ownership
Your sensor data belongs to you. We never sell, share, or use customer data for training AI models. Data export available at any time in CSV or JSON format.
Breach Response
72-hour breach notification to affected customers and regulatory authorities. Documented incident response procedure. Privacy team contact available.
Compliance Roadmap
SOC 2 Type II audit planned for 2027. GDPR-compliant data processing with DPA available. IEC 62443 security zone architecture at the edge.
Architecture Overview
Edge Layer
- Air-gapped OT network
- Local MQTT broker (store & forward)
- Tailscale VPN (zero-trust)
- UFW firewall on every node
Transport Layer
- Sparkplug B over MQTT
- TLS 1.3 on all connections
- HiveMQ Cloud (managed broker)
- Webhook HMAC-SHA256 signatures
Cloud Layer
- Convex (real-time backend)
- Clerk (authentication)
- Vercel (edge delivery)
- Sentry (error monitoring)
This describes the components of the platform. For the definitive list of who processes customer data on our behalf — and what each one receives — see the sub-processors listed in our Data Processing Agreement.
Responsible Disclosure
If you discover a security vulnerability, please report it responsibly. We appreciate your help in keeping our customers safe.
Questions About Security?
We're happy to answer questions about our security practices or provide additional documentation for your procurement team.