ShiftLineSign in

Trust & Security

Your contracts, demand data and schedules are some of your company's most sensitive information. They belong to you, they stay isolated from every other customer, and they are never used to train AI models.

Your data is never used to train AI

AI features (contract extraction, contract Q&A, explanations) send only what the feature needs to our AI gateway, which routes exclusively to providers that do not collect prompts and that operate under zero-data-retention terms. If no such provider is available, the request fails rather than falling back. Your Company Manager can switch AI off entirely; the solver and compliance checks never use AI.

Each company is isolated in the database

Every request runs inside a transaction bound to your company, and Postgres row-level security policies on every company table only expose that company's rows. The application connects as a restricted database role that cannot bypass these policies, and refuses to start if it could.

No direct access from the browser

Your browser only talks to the ShiftLine web app. All data access happens in our API service, which rejects any request that doesn't come through the web app or carry a valid API key. The optimization solver runs on a private network with no public address and keeps nothing after a solve.

Private, encrypted files

Contracts and statutes you upload are stored in a private, server-side encrypted bucket. There are no public links: files are streamed only to signed-in members of your company.

You control who has access

Owners and Company Managers invite users, assign roles (Planner, Labor Relations, Station Leader, Viewer…) and limit people to specific regions, stations or workgroups. SSO with SAML or OIDC (e.g. Microsoft Entra ID, Okta) is supported.

Our admin tools can't see your data

ShiftLine's platform admin panel shows only account metadata — company names, member and usage counts — so we can support you and stop abuse. It cannot show your contracts, rules, curves or bids, and our admins cannot sign in as you.

Every change is audited

Rule approvals, bid generations, edits, publications, role changes and settings changes are recorded in an audit log your admins can review and export.

Export or delete everything, any time

Admins can export all company data as JSON. The Owner can permanently delete the company, which removes every record and every stored file.

Encryption and credentials

TLS for all traffic; database and file storage are encrypted at rest. Passwords are hashed, API keys are stored only as hashes, and secrets are never sent to the browser.