Security & Data Isolation

Your data is yours. No exceptions.

MechIQ uses database-level security to guarantee that no garage can ever see another garage's customers, vehicles, jobs, or pricing. Here's exactly how it works.

Database-Level Isolation

Your data is separated at the database engine level using PostgreSQL Row-Level Security. Even a software bug cannot leak data between garages.

Encrypted at Rest & In Transit

All data encrypted with AES-256 at rest on AWS and TLS 1.2+ in transit. Nobody can intercept or read your data.

Your Data, Your Control

Export all your data at any time. If you leave MechIQ, your data is fully deleted within 30 days.

GDPR Compliant

Built for the EU market from day one. Customer consent, data access requests, and right-to-deletion are all built in.

How Data Isolation Works

MechIQ uses PostgreSQL Row-Level Security (RLS) — the same technology used by financial platforms and healthcare systems.

1

Every record in the database — every customer, vehicle, job, invoice — is tagged with your garage's unique identifier.

2

The database itself enforces a security policy: "Only return rows that belong to the currently authenticated garage." This is a database rule that cannot be bypassed by application code.

3

When your staff log in, their session is locked to your garage. Every database query is automatically filtered — they physically cannot see another garage's data.

4

This protection applies to every table: customers, vehicles, jobs, invoices, quotes, communications, diagnostics, inventory, and reports.

How This Compares

Not all multi-tenant platforms protect your data the same way.

Method How It Works Risk
Database-level RLS Database engine enforces isolation. Application code cannot override it. Lowest
Application-level filtering Software adds a filter to queries. A missed filter = data leak. Higher
Separate databases Strong isolation but expensive, complex to maintain, slower updates. Low (costly)

MechIQ combines the cost efficiency of a shared platform with the security guarantee of separate databases.

What MechIQ Staff Can See

Aggregate statistics only: total garages, total jobs processed, system health. Used for platform monitoring and support.

No access to: individual customer names, phone numbers, vehicle registrations, job details, invoices, quotes, or diagnostic reports.

Support access: If you raise a support request, an engineer may temporarily access your data to investigate — only with your permission, logged, and time-limited.

AI Features & Cross-Garage Learning

MechIQ's AI learns from anonymised patterns across all garages to improve diagnostic accuracy — without ever exposing your data.

What's shared: Fault code + vehicle make/model/year + confirmed repair outcome. No customer names, no garage names, no registration plates.

Never shared: Your quote pricing, labour rates, and profit margins stay completely private to your garage.

The benefit: You get the collective diagnostic knowledge of the entire network without exposing any of your commercial data.

Ready to see it in action?

Book a demo and we'll show you exactly how your data stays isolated.

Join the Waitlist