Security
Organization-scoped access, built for plant operations
Dockvera is designed to keep each customer’s users, plants, vendors, schedules, and operational records scoped to the correct organization and site.
Security controls
Designed for organization- and plant-scoped operations with role-based access and commercially reasonable safeguards.
Identity and access
Authenticated customer users
Dockvera uses a dedicated identity provider for sign-in and session management. Customer administrators control who has access to their organization.
Plant-level permissions
Organization- and plant-scoped roles
Roles limit access for plant management, security, and read-only visibility. Authorization is enforced server-side on protected operations.
Vendor link controls
Revocable, expiring invite links
Vendors may submit delivery requests through plant-specific links without creating an account. Authorized plant users can replace or revoke those links when needed.
Data scoping
Database row-level security
Customer data access is designed around organization and plant context, with database row-level security as a defense-in-depth control alongside application authorization.
Managed infrastructure
HTTPS and managed backups
Traffic uses encrypted HTTPS connections. Dockvera runs on managed cloud providers for application hosting, database services, authentication, and email, including managed production backups.
Operational accountability
Audit history
Key scheduling and operational changes can be recorded to support internal review, coordination, and dispute research. Platform administrative access is restricted.
Security is a shared responsibility
Dockvera applies commercially reasonable administrative, technical, and organizational safeguards. Customers remain responsible for managing authorized users, configuring roles, protecting invite links, and securing the devices used to access the service.
Review our approach to privacy, acceptable use, and service terms.
Security questions? support@dockvera.com
FAQ
- Does Dockvera require vendor accounts?
- No. Vendors may use plant-specific invite links to submit delivery requests without creating a Dockvera account.
- Can plant access be limited by role?
- Yes. Customer users can be assigned access based on their operational responsibilities and authorized plants.
- Can vendor links be revoked?
- Yes. Authorized plant users can replace or revoke active vendor links.
- How does Dockvera protect customer information?
- Dockvera uses layered safeguards including authenticated access, organization- and plant-scoped permissions, server-side authorization, database row-level security, revocable vendor links, audit history, and encrypted HTTPS connections. No system can guarantee complete security; customers remain responsible for authorized users, invite links, and devices.