Security
Security is built into how FleetSijil is designed, not added on afterwards.
Last updated: September 2026
Tenant isolation
Every customer’s data is separated at the database layer itself, not by application code — so even a fault in the product cannot expose one organization’s records to another.
Authentication & MFA
Sign-in runs on a dedicated identity provider, with two-factor authentication required for privileged accounts.
Encryption
Traffic is encrypted in transit with TLS, and credentials are never stored in plain text.
Least privilege
The application connects to the database as a least-privilege role. Cross-tenant access is reserved for tightly-scoped platform operations.
Auditability & PDPL
Sensitive actions are recorded in an audit log, and data lifecycle (export and retention purge) is built in, PDPL-aware by design.
Report an issue
Found something? Please email fleetsijil@hawksims.com. We take reports seriously.