Security Policy

Effective Date: July 2026

Purpose

DriverProof is committed to protecting the confidentiality, integrity, and availability of user information. This Security Policy describes the measures DriverProof takes to safeguard inspection records and user data, while also outlining the responsibilities of users in maintaining the security of their accounts.

No security system is completely immune from risk, but DriverProof is designed to implement reasonable administrative, technical, and physical safeguards appropriate for a cloud-based inspection platform.

Account Security

Users are responsible for maintaining the confidentiality of their account credentials.

Users should:

  • Create strong, unique passwords.

  • Protect their login credentials.

  • Secure their mobile device.

  • Log out of shared devices.

  • Promptly report suspected unauthorized access.

Users are responsible for all activity occurring under their account unless prohibited by applicable law.

Authentication

Access to DriverProof requires user authentication.

Authentication measures are intended to ensure that inspection records remain associated with the correct user account and help prevent unauthorized access.

DriverProof may implement additional authentication methods, including multi-factor authentication, as security features evolve.

Data Encryption

DriverProof uses industry-standard encryption technologies where appropriate to help protect user information during transmission and storage.

Encryption helps reduce the risk of unauthorized interception or disclosure of inspection data but does not eliminate all security risks.

Secure Data Storage

Inspection records are stored using reputable cloud infrastructure providers selected for their security, reliability, and scalability.

DriverProof regularly evaluates its infrastructure and may change service providers when appropriate to improve performance, security, or operational efficiency.

Permanent Inspection Records

Inspection records are intentionally protected from alteration after submission.

To preserve the integrity of historical documentation:

  • Submitted inspections cannot be edited.

  • Submitted inspections cannot be deleted by users.

  • Inspection photographs cannot be replaced.

  • Inspection timestamps remain part of the permanent record.

These protections are intended to preserve the historical authenticity of submitted inspections.

Device Security

DriverProof operates on user-controlled mobile devices.

Users are responsible for maintaining reasonable security on their devices, including:

  • Installing operating system updates.

  • Using device passcodes or biometric authentication.

  • Preventing unauthorized access.

  • Protecting devices from malware where applicable.

DriverProof cannot protect information stored on a compromised device.

Access Controls

Access to DriverProof systems is limited to authorized personnel who require access to perform legitimate operational, customer support, maintenance, or security functions.

Administrative access is restricted using internal security controls designed to minimize unauthorized access.

Monitoring

DriverProof may monitor system activity for purposes including:

  • Detecting unauthorized access.

  • Identifying security incidents.

  • Preventing fraud or abuse.

  • Diagnosing technical issues.

  • Maintaining service reliability.

Monitoring is conducted in accordance with applicable laws and the DriverProof Privacy Policy.

Third-Party Services

DriverProof relies on trusted third-party service providers for certain functions, including cloud hosting, authentication, notifications, analytics, payment processing, and data storage.

While DriverProof carefully selects its providers, each provider maintains its own security practices and privacy policies.

DriverProof is not responsible for security failures that occur solely within independent third-party systems beyond its reasonable control.

Security Incidents

If DriverProof becomes aware of a security incident affecting user information, the company will investigate the incident and, where required by applicable law, provide appropriate notifications to affected users and regulatory authorities.

The timing and content of any notification will depend on the nature of the incident, the information involved, and applicable legal requirements.

User Responsibilities

Users should:

  • Keep account information current.

  • Use secure passwords.

  • Protect mobile devices.

  • Report suspected account compromise promptly.

  • Avoid sharing account credentials.

  • Install application updates when available.

Failure to follow reasonable security practices may increase the risk of unauthorized access.

Availability

DriverProof works to maintain reliable access to its services but cannot guarantee uninterrupted availability.

Service interruptions may occur due to:

  • Scheduled maintenance.

  • Software updates.

  • Internet connectivity issues.

  • Cloud provider outages.

  • Mobile device failures.

  • Events outside DriverProof's reasonable control.

No Absolute Security Guarantee

Although DriverProof employs commercially reasonable security measures, no internet-based service, cloud platform, mobile application, or electronic storage system can be guaranteed to be completely secure.

Accordingly, DriverProof cannot guarantee that unauthorized access, data breaches, cyberattacks, hardware failures, software defects, or other security events will never occur.

Reporting Security Concerns

Users who believe their account has been compromised or who identify a potential security vulnerability should contact DriverProof as soon as reasonably possible using the contact information provided on the DriverProof website.

Prompt reporting helps protect both individual users and the DriverProof platform.

Policy Updates

DriverProof may update this Security Policy periodically to reflect changes in technology, legal requirements, industry standards, or operational practices.

Continued use of DriverProof after any revised Security Policy becomes effective constitutes acceptance of the updated policy.

gray concrete wall inside building
gray concrete wall inside building
Contact

Questions? Reach out anytime.

Email

Phone

contact@driverproof.com

© 2025. All rights reserved.

Last Updated: July 2026 Version: Legal Documentation v1.0 (Draft until attorney approval)