Data Policy
Last updated: August 2026
1. Data Ownership
Data you enter into Portaz - shipment records, billing data, vehicle and driver records, customer and agent profiles - belongs to your organization. We process it on your behalf to operate the platform.
2. Encryption
Sensitive fields, including KYC document numbers and bank details, are encrypted before they are stored and are never written to logs or the audit trail in full. All traffic to and from Portaz is encrypted in transit over HTTPS.
3. Access Control
Every screen in Portaz is protected by screen-level access rights, checked on every request against the roles and permissions your organization assigns. Access denials are logged the same way as failed logins, so unauthorized access attempts are auditable.
4. Audit Logging
Every login attempt - successful or not - and every significant data change is recorded in an append-only audit trail. This trail cannot be edited or deleted through the application and is the first place we look during a security review.
5. Third-Party Processing
Where a module calls a third-party service - such as KYC document verification - only the minimum data required for that check is sent, over an encrypted connection, and responses are handled under the terms of our agreement with that provider.
6. Data Location and Backups
Your data is stored in a single database maintained by Portaz, backed up on a regular schedule so operations can be restored quickly in the event of an incident.
7. Contact
Questions about how your data is handled can be sent to info@ziacsoft.com.