Trust & security

Your company's data, isolated and protected

JobGantry is multi-tenant by design: every record is scoped to your company, with role-based access, strong auth, and a full audit trail.

🏢

Tenant isolation

Every record is scoped to a company ID. Tenants are fully isolated — your data never mingles with another contractor's.

🔐

Auth & RBAC

JWT sessions with role-based access control and per-tab permissions, so receiving, AP, and financials stay limited to the right staff.

📲

Two-factor auth

TOTP 2FA with backup codes and a stronger password policy, available to every user on every plan.

📜

Audit log

Financial and contractual actions are recorded on an audit log with an admin viewer, so you can answer "who changed what."

🗄️

Hardened data layer

Optimistic locking with version columns and 409 conflict handling prevents silent overwrites on shared records.

☁️

Cloud infrastructure

Runs on managed cloud infrastructure (container compute, managed Postgres, and object storage) in a Canadian region.

🛂

Platform admin controls

A gated vendor console supports suspend/reactivate, plan changes, user deactivation, password reset, and audit-logged impersonation.

✉️

Verified webhooks

Inbound email and integration webhooks are signature-verified before any record is created.

🔑

Encrypted tokens

Third-party credentials such as QuickBooks tokens are stored encrypted, not in plain text.

🔒 TLS in transit
🏢 Multi-tenant isolation
📲 TOTP 2FA
📜 Audit logging
🛡️ Role-based access
Common questions

Security FAQ

Where does my data live?

On managed cloud infrastructure — container compute, a managed PostgreSQL database, and object storage for files — hosted in a Canadian region.

Can other companies see my jobs?

No. Every record is scoped to your company ID and tenants are fully isolated at the data layer.

How do you control who sees money?

Role-based access control plus per-tab permissions let you restrict receiving, AP, and financial tabs to specific staff.

What happens if a company is suspended?

Suspension is enforced at login. Platform admins can suspend or reactivate a company, and all such actions are audit-logged.

Do you support 2FA?

Yes — TOTP-based two-factor authentication with backup codes, on every plan.

See JobGantry on your jobs

Book a 30-minute walkthrough and we'll show you live job costing, the field app, and QuickBooks sync using a project like yours.