Encryption
Customer data is encrypted at rest and in transit.
How we handle your data, protect access, and prepare for incidents.
Visit our security centerIndemni receives shipment and verification information from customers, drivers, and connected TMS systems. This can include shipment details, driver information, documents, images, location data, and biometric information used in verification.
We use this information to support the workflows your team requests, including verification, tracking, and evidence review. Service providers help us operate the platform and deliver these services.
Production data is hosted in the United States. We do not use production data for development or testing. Some production information may be used in support tools to help resolve customer issues.
Some image-recognition tools process submitted images. Indemni does not use customer data to train models.
Customer data is encrypted at rest and in transit.
Our data-management and retention policy guides how information is handled throughout its lifecycle.
Employee access is based on responsibilities. We review access at least annually and remove access through our offboarding process.
We require multi-factor authentication for critical services and infrastructure, with documented exceptions where it is unsupported.
We use infrastructure scanning, firewalls, and cloud-storage controls to restrict unintended exposure. Employee devices use encryption, anti-malware protection, firewalls, and device management.
Our development process includes documented change management, pull request reviews, and monitoring of software supply-chain risks.
We maintain procedures for detecting, responding to, and recovering from security incidents.
Automated backups support high-risk data and critical systems. Business-continuity and disaster-recovery policies guide our response to disruption.
We scan for vulnerabilities, conduct penetration testing, and track findings through remediation.
Your team’s access, sharing, retention, and deletion requirements are part of the security conversation.
Contact us to discuss how Indemni handles these requirements for your use of the platform, including data access, export, and deletion requests.
Indemni is currently in its SOC 2 audit period. Once the final report is available, we will make it available to qualified customers and prospects through the appropriate access process.
View our security centerIndemni has completed third-party penetration testing. Qualified customers can request supporting information through the applicable NDA and access process.
Request security documentsOur SOC 2 audit period is in progress. A final SOC 2 report is not yet available.
Production data is hosted in the United States.
No. Indemni does not use customer data for model training. Some image-recognition tools process submitted images as part of the requested workflow.
We maintain a vendor inventory and a vendor-management program to assess and manage third-party risk, including services provided and scope of access.
Yes. Visit our security center to request restricted documents. Access is subject to the applicable approval and NDA process.
Yes. Book a demo to discuss your workflows, data requirements, and security questions with our team.
Walk through Indemni, discuss your data and access requirements, and ask the security questions that matter to your team.
Bring your data and access requirements.
Book a demo