Security and your data
How ThermaCare keeps your organisation's data private, safe and yours.
Your data is walled off
Every location, record, photo, document and person belongs to your organisation and to no one else. An admin at another business can never see it; an id from another organisation simply does not exist as far as they are concerned. The only shared content is the master equipment catalogue, the standard tasks, the legal register and ThermaCare's reference documents - and only ThermaCare can change those.
Signing in
- Passwords are stored as bcrypt hashes and never in the clear; they must be at least 8 characters and not a well-known password.
- Google sign-in uses Google's verified email only. Sessions live on the server, expire after 30 days, and every other device is signed out when you change or reset a password. Repeated failed sign-ins are throttled.
- Reset and invite links work once and expire (1 hour and 7 days).
Files
Uploaded documents and photos are stored privately and only ever served through a short-lived signed link to someone with access to that location or organisation. Only PDFs, images, Office documents and text files are accepted.
In transit and at rest
Everything travels over HTTPS with strict transport security; the database and file storage are encrypted at rest by the hosting provider, in the EU.
Audit trail
Sign-ins (including failed attempts), account changes, users added or removed, locations created or deleted, billing actions, legal confirmations and uploads are recorded with who, when and from which address. Admins can read their organisation's trail under Audit log.
Who else touches your data
- Stripe handles card details - ThermaCare never sees a card number.
- Resend delivers email and Twilio delivers texts (your email address and mobile number, plus the message).
- Anthropic powers the AI librarian: it receives excerpts of your documents and your question, and nothing is used to train models.
- Google, only if you sign in with Google.
Your rights
You can export or delete your organisation's data by emailing support@thermacare.app; we respond within 30 days. Deleting a location permanently is available to ThermaCare super admins with a two-step confirmation. If we ever have a security incident affecting your data we will tell you within 72 hours what happened and what we did.
