Security Best Practices

How we keep your data safe.

We implement industry-leading security practices to ensure your data stays protected at all times.

Infrastructure & Hosting

Our data is hosted on Supabase, which runs on highly secure AWS infrastructure. This provides us with enterprise-grade reliability and security from the ground up.

Encryption Everywhere

Everything is encrypted in transit using TLS 1.2+. This means any data moving between your app and our servers is protected from interception. At rest, all your information is encrypted with industry-standard AES-256 encryption.

Database Isolation

Each carrier's data is strictly isolated at the database level through robust row-level security (RLS). Drivers and dispatchers only ever see their own organization's records. This isn't just an application-level filter — it is enforced by the core database itself, meaning data cannot be accidentally leaked across organizations.

Passwordless Authentication

We use one-time passcodes (OTP) for authentication. By not using passwords, we eliminate the risk of stolen or guessed passwords entirely. Your account is secured by your direct access to your email or phone.

Document Security

Driver documents (CDL, medical cards, MVR) are treated with the highest sensitivity. They are stored in secure, access-controlled buckets that apply the exact same per-organization isolation as our core database.

Questions about security? Reach us at support@getsuremile.com.