Platform
Security & Compliance
Enterprise-grade security for your fleet and logistics data. GDPR and Swiss nDSG compliant with flexible hosting options.
Data Protection
- gavelGDPR compliant — full EU General Data Protection Regulation compliance. Personal data processing with consent. Right to erasure supported.
- shieldSwiss nDSG compliant — compliant with the revised Swiss Federal Act on Data Protection (2023)
- descriptionDPA available — Data Processing Agreement for all customers
- gps_fixedGPS consent — drivers explicitly accept tracking terms before GPS monitoring begins
- deleteRight to erasure — personal data can be deleted on request
Authentication & Access Control
JWT-based authentication with secure token management:
- keyAccess token — 60-minute validity with automatic refresh (configurable per deployment)
- autorenewRefresh token — 7-day validity with rotation (configurable per deployment)
Role-based access control
| Role | Capabilities |
|---|---|
| Admin | Full access: users, vehicles, zones, slots, routes, settings, invoicing |
| Manager | Route planning, dispatch, monitoring, capacity overrides, reporting |
| Courier | View assigned routes only (via Driver Pro). Status updates and PoD capture. |
Row-Level Access (RLA) provides complete data isolation between suppliers at the database query level. Every API request is filtered through RLA — a supplier can never access another supplier data, even with a valid token.
Infrastructure
- dnsFlexible hosting — cloud hosting in client country, or fully on-premise deployment
- lockEncrypted transmission — all data in transit encrypted via TLS/HTTPS
- updateSecurity updates — regular patching and security monitoring
- backupAutomated backups — with point-in-time recovery
- domain_verificationMulti-tenancy — complete data isolation between suppliers at database query level
cloud
Unlike SaaS-only solutions, Fleet Planner supports on-premise deployment for organisations with strict data residency requirements.