Security & Trust

Enterprise-grade security and privacy

Trust is foundational at Fleet. Our security program protects your data across Fleeto, your connected systems, and the partners you collaborate with every day.

SOC 2 Type II AES-256 Encryption SAML/SSO GDPR Ready
Fleet security illustration

You own and control your data

Fleet was built for regulated logistics teams. You decide where data resides, who can access it, and how long it is retained.

01 Complete data ownership

All inputs, outputs, and fine-tuned models remain yours.

02 Retention on your terms

Enterprise controls dictate retention windows and redaction.

03 Segregated infrastructure

Dedicated virtual private cloud and encrypted storage per tenant.

04 Role-based access

SSO and granular permissions align with your org structure.

05 Comprehensive audit logs

Every action is tracked and exportable for compliance review.

06 Model isolation

We never commingle customer prompts or outputs across tenants.

Policies

Compliance at every layer

Security reviews are not a checkbox. We integrate best practices into our engineering playbooks and partner with third-party assessors to validate our controls.

Need to run a deep dive? security@fleet.ke can share documentation and walkthroughs.

AES

AES-256

Data is encrypted end-to-end. We use AES-256 for data at rest and TLS 1.2+ for data in transit, with automatic key rotation via AWS KMS.

  • Customer data stored in dedicated encrypted volumes.
  • Keys isolated per tenant with strict access policies.
  • Continuous scanning ensures cipher suites remain current.
VPC

VPC + NAT

Fleeto runs inside private AWS VPCs with locked-down subnets and NAT gateways, exposing only the endpoints required for secure integrations.

  • Ingress restricted to allowlisted services and IP ranges.
  • Private service networking for data pipelines and automations.
  • Network access monitoring with automated anomaly alerts.
AWS

AWS

Physical security and infrastructure hardening leverage Amazon Web Services' shared responsibility model, with all workloads deployed in hardened regions.

  • ISO 27001, SOC, and FedRAMP certified data centers.
  • Automated patching and golden AMIs for production hosts.
  • Multi-region backups replicated to encrypted cold storage.
MDM

Mobile Device Management

Every Fleet-managed laptop and mobile device is enrolled in MDM with enforced disk encryption, automatic patching, and remote wipe capabilities.

  • Mandatory FileVault/BitLocker with hardware-backed keys.
  • Zero-trust posture with conditional access and MFA.
  • Device compliance checks before accessing production systems.
24/7

24/7/365 Monitoring

Our security and reliability teams maintain round-the-clock coverage with on-call rotations, automated alerting, and documented response playbooks.

  • Real-time telemetry with anomaly detection and paging.
  • Quarterly incident response drills across engineering and ops.
  • Customer notifications within defined SLAs for any incident.
SOC

SOC 2 Type II

Fleet maintains a SOC 2 Type II program with external auditors who validate our controls over security, availability, and confidentiality.

  • Continuous control monitoring with automated evidence collection.
  • Independent audits with customer-available summary reports.
  • Vendor management and risk assessments reviewed quarterly.

Frequently asked questions

Answers to security due diligence topics we receive from shippers, brokers, and carriers migrating to Fleeto.

Is my data encrypted by Fleet?

Yes. Data is encrypted end-to-end. We use AES-256 for data at rest and TLS 1.2+ for data in transit. Keys are rotated on an automated schedule managed via AWS KMS.

How does Fleet control access to my data?

Access requires SSO with enforced MFA. Administrative actions are constrained by role-based permissions and require peer review in our change management workflow.

Can Fleet run in a dedicated environment?

Enterprise plans support private cloud deployment with customer managed keys, VPC peering, and data localization to meet regional requirements.

How does Fleet evaluate third-party vendors?

We maintain a vendor management program that includes security reviews, contractual data processing agreements, and continuous monitoring of critical providers.

Does Fleet support customer audits?

Absolutely. We provide audit guides, walkthroughs, and access to logs so your team can validate controls and satisfy regulator or customer requests.

Book a security review

See how Fleet meets your compliance checklist

Schedule time with our security team to walk through controls, documentation, and any custom requirements for your operation.