Most of what a procurement review asks about, answered plainly. If something here is not covered, ask and we will answer it directly.
Your network stays yours
The standard deployment uses a cellular gateway with its own data plan. It does not have to touch your network at all — no firewall changes, no segment for us, no IT project. Most plant IT departments prefer it that way, and it takes the network review off your critical path.
Where your data lives
Your data stays in the United States.
Primary storage runs in a colocation data center in Utah — our own network equipment, on servers we lease and run ourselves. Not a shared public cloud tenancy. Your readings go into a database we control, and we manage and operate the whole of it. Encrypted backups are held with a separate storage provider, also in a US region.
Kept separate from every other customer
Each customer is isolated: separate tenancy, network isolation, and segmented networks between environments. Sign-in and identity are handled by Auth0. One customer’s data is not reachable from another customer’s session.
Who can see it
Named administrators only. Not support staff, not contractors, not subcontractors. Access on your side is set by role and need-to-know, and you tell us who to add, change, or remove.
How your data may be used
We compile aggregate, anonymised statistics about how the service performs — never anything that identifies you, your facility, or your confidential information. Your readings remain yours.
If something goes offline
Sensors store readings locally and retransmit when connectivity returns, so an outage does not leave a gap in your record. And if we lose contact with your gateway, you get a “we can’t see your plant” alert — you learn about an outage before it costs you.
If a server fails
The system runs on a clustered, high-availability setup rather than a single machine. If a node fails, the workload moves to another one.
Backups, and proof they work
Your monitoring history is backed up incrementally to off-site storage held with a separate provider in a US region, so a problem at one location cannot take your record with it.
Backups are encrypted before they leave the data center and travel over TLS, which means the storage provider holds encrypted data and nothing readable.
And we have restored them. Not as a policy on paper — as something we have actually done, with checksums confirming that what came back matches what went in. A backup nobody has ever restored is a guess.
How long we keep it
Indefinitely. We retain your complete monitoring history for the life of your service and generate any date range on demand.
For context, FSIS 9 CFR 417.5(e) requires one year of records for refrigerated product and two for frozen, preserved or shelf-stable — and permits off-site storage after six months only if records can be produced on-site within 24 hours of a request. Keeping everything means a records request is answered in minutes.
How you get it back
Full export in JSON, covering every reading ever captured at your facility — not a summary and not a sample. Live alert and event data can also be pushed in real time by webhook to an ERP, a maintenance system, or building automation, so the record does not have to live only with us.
Uptime
We publish what we have actually delivered rather than a number we have not been asked to stand behind. Measured availability to date is better than 99.9%.
Support
Automated alerting runs around the clock. Human support targets a same-business-day response for anything affecting the monitoring system — a gateway offline, an alerting failure, a system-wide problem. In practice we are usually back within three hours.
Individual sensor issues, dashboard problems and alert configuration target one business day; user changes, label edits, report questions and threshold changes, two to three.
If there is ever a breach
If we determine that customer data has been affected, we notify you — followed by an assessment of what was in scope and what the impact was.
Anything else
Yes to the paperwork: we can provide a certificate of insurance and a W-9, and we will sign your MSA. A full list of the third-party services the system relies on is available on request, as is our standard agreement.