Your data, handled responsibly
Asset and operational data deserves care. This is an honest statement of how we approach security and privacy today — we describe what we do, and we don't claim certifications we don't yet hold.
UK data protection
Our approach is designed around UK GDPR and the principle of collecting only the data we need.
Role-based access
Stores, supervisors and management see what they need to do their job — and no more.
Controlled & retained sensibly
Clear handling, access and retention practices, reviewed as the service matures.
Our current approach
We are an early-stage company building a managed service responsibly. Rather than overstate our position, here is where we are today:
- We design data collection around what the service genuinely needs (data minimisation).
- We apply role-based access so information is limited to those who need it.
- We aim to host and process data in line with UK data protection requirements.
- We are working towards recognised information-security practices as we grow.
- Where a customer requires it, the platform can be deployed on infrastructure you control (self-hosted), keeping operational data in your own environment.
What we don't claim
We do not currently claim any specific security certification, accreditation or third-party approval. Where we say we are "working towards" a standard, we mean exactly that. If you have specific data, hosting or security requirements for a pilot, tell us and we'll be straight about what we can meet today.
This page is a placeholder approach statement for an early-stage prototype and will be replaced with a full data-protection and security policy, including specifics on hosting, sub-processors and retention, before any live customer deployment.
Have specific data requirements?
Tell us what you need and we'll tell you honestly what we can support.