Encrypted connections
Maintain CMMS is served exclusively over HTTPS, protecting information while it travels between your browser and the service.
TRUST & SECURITY
HOW YOUR INFORMATION IS HANDLED
Maintain CMMS is served exclusively over HTTPS, protecting information while it travels between your browser and the service.
Traffic passes through a managed edge network that provides DDoS mitigation and network-level traffic screening before requests reach the application.
Security headers prevent framing, MIME-type guessing and unnecessary browser access to sensitive device capabilities, while limiting cross-origin data exposure.
Passwords are never stored as readable text. Each password is individually salted and processed with PBKDF2-SHA-256 before the result is stored.
Sign-in tokens are generated with cryptographically secure randomness, stored as hashes and sent in Secure, HttpOnly, SameSite cookies.
Repeated failed sign-in attempts trigger a temporary account lock. Login responses avoid revealing whether an email address is registered.
Application requests are checked server-side against the signed-in user’s organisation and role. Records are queried within that organisation boundary.
Owner, administrator, manager, technician and requester permissions limit sensitive actions. Important operational changes are retained in the application audit history.
Uploaded documents and evidence use private object storage and are retrieved through authenticated, organisation-scoped application routes.
Maintain CMMS service email is authenticated with SPF and DKIM. A rejecting DMARC policy tells receiving systems to block messages that fail the domain's authentication checks.
Core business records use a structured database and the platform is designed around exportable data, documented migrations and replaceable hosting services.
YOUR DATA
RESPONSIBLE DISCLOSURE
STRAIGHTFORWARD SOFTWARE. STRAIGHTFORWARD ANSWERS.
READY TO GET MAINTENANCE UNDER CONTROL?