Security & Data Privacy
Plan Swiftly is built for engineering firms in regulated industries. We take data security seriously and are transparent about how your data is stored, protected, and managed.
Hosting & Data Sovereignty
Plan Swiftly is hosted on Amazon Web Services (AWS) in the Sydney region (ap-southeast-2). All customer data — including project plans, documents, and attachments — is stored in Australia.
Data is not replicated to overseas regions. For Australian engineering firms working on government-adjacent or regulated infrastructure projects, this means your data does not leave Australian jurisdiction.
Encryption
In transit: All connections to Plan Swiftly use TLS 1.2 or higher. Data is never transmitted unencrypted.
At rest: All data is encrypted at rest using AES-256, including databases, file storage, and backups.
Authentication
Plan Swiftly uses OAuth via Google and Microsoft for sign-in. We never store your password — authentication is delegated entirely to your identity provider.
Enterprise customers can configure SAML/SSO to enforce corporate identity policies and centralised access control.
Access Controls
Role-based access control at organisation and project level. Owners, Editors, and Viewers have distinct permissions.
Shared visualisation dashboards are password-protected. You control who can view each project.
Administrative access is strictly limited, logged, and auditable.
Data Privacy
Your data is never sold or shared with third parties.
Your project data is never used to train AI models.
We collect only the data necessary to operate the service. See our Privacy Policy for full details.
Backups & Data Export
Automated daily backups with 30-day retention, encrypted and stored in Australia.
You can export your full project data at any time in structured formats (PDF, CSV). We will never hold your data hostage.
Certifications
Plan Swiftly is currently in its early commercial stage. We do not yet hold SOC 2 or ISO 27001 certifications, but we are building our security practices with these frameworks in mind and expect to pursue formal certification as the platform matures.
If your procurement process requires specific certifications, please contact us to discuss your requirements.
Security Contact
To report a vulnerability or ask a security question, email [email protected] . We aim to respond within one business day.
Last updated: June 2026