Security

Organization-scoped access, built for plant operations

Dockvera is designed to keep each customer’s users, plants, vendors, schedules, and operational records scoped to the correct organization and site.

Security controls

Designed for organization- and plant-scoped operations with role-based access and commercially reasonable safeguards.

  • Identity and access

    Authenticated customer users

    Dockvera uses a dedicated identity provider for sign-in and session management. Customer administrators control who has access to their organization.

  • Plant-level permissions

    Organization- and plant-scoped roles

    Roles limit access for plant management, security, and read-only visibility. Authorization is enforced server-side on protected operations.

  • Vendor link controls

    Revocable, expiring invite links

    Vendors may submit delivery requests through plant-specific links without creating an account. Authorized plant users can replace or revoke those links when needed.

  • Data scoping

    Database row-level security

    Customer data access is designed around organization and plant context, with database row-level security as a defense-in-depth control alongside application authorization.

  • Managed infrastructure

    HTTPS and managed backups

    Traffic uses encrypted HTTPS connections. Dockvera runs on managed cloud providers for application hosting, database services, authentication, and email, including managed production backups.

  • Operational accountability

    Audit history

    Key scheduling and operational changes can be recorded to support internal review, coordination, and dispute research. Platform administrative access is restricted.

Security is a shared responsibility

Dockvera applies commercially reasonable administrative, technical, and organizational safeguards. Customers remain responsible for managing authorized users, configuring roles, protecting invite links, and securing the devices used to access the service.

Review our approach to privacy, acceptable use, and service terms.

Security questions? support@dockvera.com

Request security documentation

FAQ

Does Dockvera require vendor accounts?
No. Vendors may use plant-specific invite links to submit delivery requests without creating a Dockvera account.
Can plant access be limited by role?
Yes. Customer users can be assigned access based on their operational responsibilities and authorized plants.
Can vendor links be revoked?
Yes. Authorized plant users can replace or revoke active vendor links.
How does Dockvera protect customer information?
Dockvera uses layered safeguards including authenticated access, organization- and plant-scoped permissions, server-side authorization, database row-level security, revocable vendor links, audit history, and encrypted HTTPS connections. No system can guarantee complete security; customers remain responsible for authorized users, invite links, and devices.