Security at Manufacturing BI Copilot
Your factory's production data, orders, inventory, and operations are sensitive. Here is exactly how we protect them.
Data Transmission
All data between your browser and our servers is encrypted using HTTPS/TLS. Your production reports and order data are never transmitted in plain text.
Password Protection
Your account password is hashed using bcrypt before storage. We never store or have access to your actual password.
Two-Step Account Verification
Every new account requires both email and Indian mobile number verification via one-time passwords (OTP) before access is granted. This prevents unauthorized account creation and protects your factory data.
Login Protection
After 5 consecutive failed login attempts, your account is temporarily locked for 15 minutes to prevent unauthorized access.
Secure Sessions
We use HTTP-only session cookies that cannot be read by browser scripts, reducing the risk of session hijacking.
Factory Data Isolation
The most important guarantee: your factory's data is completely isolated from every other customer. All database queries are scoped to your company — it is technically impossible for another factory to see your production data, orders, or inventory.
AI Query Security
When you use the AI Copilot, all queries run through a dedicated read-only database connection. The AI cannot modify, delete, or export your data under any circumstances.
Admin Security
All administrative actions on accounts are logged with timestamps for audit purposes. Accounts can be protected or restored instantly if needed.
Data Ownership
Your production data, orders, inventory, and reports are your property. Manufacturing BI Copilot processes your data only to provide the service and does not claim ownership of your business information.
Infrastructure
Manufacturing BI Copilot is hosted on Vercel (application) and Neon PostgreSQL (database). Both are modern cloud providers with their own security practices. Visit vercel.com and neon.tech for their respective security information.
Continuous Improvement
We continuously improve our security practices and will introduce additional protections over time.
Responsible Disclosure
Found a security vulnerability? Please contact us privately: support@example.com. We respond to all security reports promptly and will not take legal action against good-faith researchers.