Legal
Security & Support Policy
This policy explains how Fabricata Track approaches security and support without promising unsupported service levels.
Last updated 2026-09-27
Security Overview
Security measures include authentication with account lockout, password hashing, role-based access, organisation scoping of every record, CSRF protection, a strict content security policy, upload validation, audit records and provider-level infrastructure controls.
Customer Responsibilities
Use strong, unique passwords, keep credentials private, give people the least access they need, remove users who no longer need access, and report suspicious activity promptly.
Backups
The database provider keeps point-in-time history for recovery. No fixed recovery point or backup schedule is promised unless agreed in writing.
Vulnerability Reporting
Report suspected vulnerabilities through the contact listed in the Legal Notice, with enough detail to reproduce the issue. Please do not access other customers' data while investigating.
Support
Support covers account assistance, bug reports, workflow guidance and product questions. It does not include engineering sign-off, contract advice or guaranteed production outcomes. No 24/7 support is promised unless agreed in writing.
These policies are published for transparency and should be reviewed with the business owner and a qualified legal professional as Fabricata Track grows.