FuelDeck™ Beta — the unified platform arrives 2026 Letter from our CEO →

Home / Trust & security

Trust & security

Your fuel data, locked down by default

Uplift tickets, supplier invoices, flight schedules — and the dollars riding on them. That data is sensitive, so FuelDeck™ runs on Google Cloud with isolation, encryption and least-privilege access enforced by the infrastructure itself, not switched on after the fact.

SOC 2 compliant99.95% uptime SLATLS 1.3 + AES-256Per-tenant isolation

The foundations

The three things everything else rests on

Hosting, encryption and tenancy hold up the rest of the platform. Each is enforced in the infrastructure, where it can't be forgotten or misconfigured away.

SOC 2 · 99.95% SLA

Google Cloud infrastructure

FuelDeck™ is built entirely on Google Cloud and Firebase — SOC 2 compliant, globally distributed, and backed by a 99.95% uptime SLA across Authentication, Firestore and Storage. You inherit the same operational hardening Google runs its own services on.

TLS 1.3 · AES-256

Encrypted end to end

Every ticket, invoice and record is encrypted in transit with TLS 1.3 and at rest with AES-256. API keys and service credentials live server-side only — they are never shipped to the browser or embedded in client code.

Per-tenant isolation

Your data, only yours

Firestore security rules enforce strict per-tenant access at the database layer. There is no code path that can query across tenants — every read and write is scoped to your account before it ever reaches the data.

Defense in depth

Seven layers, each assuming the one above can fail

From the data center to the database rule, each layer assumes the one above it can fail. Here is what protects your fuel data, top to bottom.

01

Infrastructure

Hosted on Google Cloud / Firebase — physically secured, globally redundant data centers running managed Authentication, Firestore and Storage. No self-managed servers to patch or leave exposed.

Google Cloud
02

Encryption

TLS 1.3 protects every byte in transit between your browser, our services and Google Cloud. Data at rest is encrypted with AES-256. Records are never written or transmitted in the clear.

TLS 1.3 · AES-256
03

Access control

Every request is authenticated before it touches data. Firestore security rules scope each read and write to the signed-in tenant — access is denied by default and granted only to the records that belong to you.

Default deny
04

Per-tenant isolation

Each customer's data is partitioned and fenced by security rules so no account can query another's tickets, invoices or filings. There is no cross-tenant query — isolation is enforced by the database, not by application logic alone.

No cross-tenant queries
05

Key management

API keys and service credentials are held server-side and never exposed to the browser or embedded in client bundles. The front end talks only to authenticated, scoped endpoints.

Server-side only
06

Availability & SLA

A 99.95% uptime SLA covers Authentication, Firestore and Storage, with Google's globally distributed redundancy underneath. The audited ledger stays reachable when you need it.

99.95% SLA
07

Compliance

The platform is SOC 2 compliant, inheriting the controls and audited practices of Google Cloud. We commit only to what we can attest to — SOC 2 today, with our posture reviewed as we grow.

SOC 2

Security at a glance

The short version

Everything an information-security reviewer asks for first, in one table.

HostingGoogle Cloud / Firebase
ComplianceSOC 2
Uptime SLA99.95% — Authentication, Firestore & Storage
In transitTLS 1.3
At restAES-256
TenancyPer-tenant Firestore isolation via security rules
Cross-tenant accessNone — no cross-tenant queries
SecretsAPI keys & credentials server-side only — never in the browser

Data handling & privacy

What we process, and how it stays yours

FuelDeck™ works with the operational records of fuelling — and nothing more than it needs to do that job. Here is what enters the platform and how it is contained.

What we process

Operational fuel data

The records FuelDeck™ ingests are fuel uplift tickets, supplier invoices and airline schedules — the documents needed to capture, validate, recover and file. We process the data required to reconcile fuelling, not to profile people.

How it's isolated

Fenced to your tenant

Your tickets, invoices and filings are partitioned by tenant and enforced by Firestore security rules. No other customer — and no unauthenticated request — can read or query your records. Isolation is structural, not a setting you have to remember to enable.

How it's retained

Auditable, then yours to remove

Records persist as the audited ledger your operations and filings depend on, encrypted at rest with AES-256. Retention follows your agreement, and data can be exported or removed on request. See our privacy commitments for the full detail.

Read the privacy policy →

Security FAQ

Straight answers

The questions security and procurement teams ask us most.

Where is my data hosted?
FuelDeck™ runs entirely on Google Cloud and Firebase — globally distributed, physically secured data centers running managed Authentication, Firestore and Storage. There are no self-managed servers in the path of your data.
Who can access my data?
Only authenticated users within your own tenant. Firestore security rules scope every read and write to the signed-in account, access is denied by default, and there is no cross-tenant query path. Internally, API keys and service credentials are held server-side and never exposed to the browser.
Is my data encrypted?
Yes — end to end. Everything is encrypted in transit with TLS 1.3 and at rest with AES-256. Records are never written or transmitted in the clear.
What is your uptime guarantee?
A 99.95% uptime SLA covers Authentication, Firestore and Storage, backed by Google Cloud's globally redundant infrastructure.
How do you isolate tenants from each other?
Each customer's data is partitioned and enforced by Firestore security rules at the database layer. No account can query another's tickets, invoices or filings — isolation is enforced by the database itself, not left to application code alone.
What compliance certifications do you hold?
FuelDeck™ is SOC 2 compliant and inherits the audited controls of Google Cloud. We commit only to what we can attest to today, and review our posture as the platform grows.

Talk to our team

Run FuelDeck™ past your security review

We'll walk your security and procurement teams through hosting, encryption, isolation and our SOC 2 posture — and show the platform handling your own fuel data, live.

Book a demo