Security

Access on a need basis. Traceability by default.

FleetFinder is designed for tenant isolation, field-level restrictions, and an audit trail for sensitive actions.

Controls

  • Server-side authorization and Row Level Security in the database.
  • No service-role keys or raw source objects reach the browser.
  • Rate-limited and audited exports with CSV formula-injection protection.
  • Event log for search, calls, lead status, source approval, and export.
  • Secure HTTP headers, no-index on previews, and documented key rotation.

Report a vulnerability

Send a short description to security@fleetfinder.dk. Don't include personal data or active exploit data in your first message.