Security at Manufacturing BI Copilot

Your factory's production data, orders, inventory, and operations are sensitive. Here is exactly how we protect them.

Data Transmission

All data between your browser and our servers is encrypted using HTTPS/TLS. Your production reports and order data are never transmitted in plain text.

Password Protection

Your account password is hashed using bcrypt before storage. We never store or have access to your actual password.

Two-Step Account Verification

Every new account requires both email and Indian mobile number verification via one-time passwords (OTP) before access is granted. This prevents unauthorized account creation and protects your factory data.

Login Protection

After 5 consecutive failed login attempts, your account is temporarily locked for 15 minutes to prevent unauthorized access.

Secure Sessions

We use HTTP-only session cookies that cannot be read by browser scripts, reducing the risk of session hijacking.

Factory Data Isolation

The most important guarantee: your factory's data is completely isolated from every other customer. All database queries are scoped to your company — it is technically impossible for another factory to see your production data, orders, or inventory.

AI Query Security

When you use the AI Copilot, all queries run through a dedicated read-only database connection. The AI cannot modify, delete, or export your data under any circumstances.

Admin Security

All administrative actions on accounts are logged with timestamps for audit purposes. Accounts can be protected or restored instantly if needed.

Data Ownership

Your production data, orders, inventory, and reports are your property. Manufacturing BI Copilot processes your data only to provide the service and does not claim ownership of your business information.

Infrastructure

Manufacturing BI Copilot is hosted on Vercel (application) and Neon PostgreSQL (database). Both are modern cloud providers with their own security practices. Visit vercel.com and neon.tech for their respective security information.

Continuous Improvement

We continuously improve our security practices and will introduce additional protections over time.

Responsible Disclosure

Found a security vulnerability? Please contact us privately: support@example.com. We respond to all security reports promptly and will not take legal action against good-faith researchers.