Skip to content

Security and privacy

How ProTTM protects your records

ProTTM holds your jobs, plans, people and invoices. This is how it keeps them separate, controls access and records every change.

Protection

What's in place

This website

Privacy on this website

This website doesn't use cookies, analytics or advertising trackers.

The Book a demo form stores what you enter, your consent, and a one-way code made from your internet address to stop repeat submissions. It isn't emailed anywhere or added to a mailing list.

Read the privacy statement

Questions

Security questions

Where is our data held?

In ProTTM's PostgreSQL database. Each company's records are separated by row-level security in the database itself, not only on screen.

Files such as plans, photos and email attachments only open after a check that the person can see the record they belong to. Ask us for the hosting provider and region.

How are sign-ins protected?

Passwords must be at least 10 characters and are stored only as Argon2 hashes. Two-factor sign-in uses an authenticator app with backup codes, and you can require it for everyone or for chosen roles.

Repeated sign-in and code attempts are rate-limited. Resetting a password signs the account out everywhere.

Is there an audit trail?

Yes. The database records every change: who made it, when, and the values before and after. The app can't alter that history. Administrators can view the audit log and export it to CSV.

Can we get our data out?

Yes. Reports download as CSV or Excel. Lists such as the competency matrix and audit log export to CSV. The read-only API returns your tasks, TMPs, bookings, timesheets and invoices.

Have a security question?

Book a demo or send us your question, and we'll answer it.