Core Pillars of TaxiDex Security
Our multi-layered security approach ensures the confidentiality, integrity, and availability of your critical transportation data and operations.
PCI DSS Compliant Payments
Secure payment processing is paramount. TaxiDex achieves PCI compliance by integrating exclusively with PCI DSS Level 1 certified payment gateways (e.g., Stripe, Adyen, Braintree).
We never store, process, or transmit raw cardholder data on our systems. All sensitive information is handled via secure tokenization by our audited partners, meeting the highest security standards in the payment industry.
Comprehensive Data Encryption
Encryption in Transit:
All communication between apps, dashboards, and our servers is secured using robust SSL/TLS (HTTPS) encryption, preventing eavesdropping.
Encryption at Rest:
Sensitive data stored in our databases (including user details, ride history, and business information) is protected using industry-standard AES-256 encryption.
Platform & Account Security
-
Real-time Fraud Detection: Our systems actively monitor for suspicious activities, including payment fraud, fake accounts, and unusual booking patterns, protecting your revenue and platform integrity.
-
Multi-Factor Authentication (2FA): Enhance account security for administrators and dispatchers with mandatory or optional 2FA, adding a crucial layer against unauthorized access.
-
Secure Cloud Infrastructure: Hosted on leading cloud providers (AWS/GCP/Azure) with robust network security, firewalls, intrusion detection systems, and DDoS mitigation.
Proactive Security Audits
-
Regular Vulnerability Scanning: Automated and manual scans are performed regularly to identify potential weaknesses in our infrastructure and application code.
-
Third-Party Penetration Testing: We engage independent security experts to perform rigorous penetration tests, simulating real-world attacks to validate our defenses.
-
Secure Development & Operations
Security is embedded in our culture and processes, from code development to daily operations.
- Secure Software Development Lifecycle (SSDLC)
- Access Control & Least Privilege Principle
- Continuous Security Training for Personnel
- Documented Incident Response Plan
- Data Privacy Compliance (e.g., GDPR principles)
Security Inquiries
Have specific questions about TaxiDex security or compliance? Our dedicated security team is here to help.
Contact Security: security@taxidex.com
Responsible vulnerability disclosure is appreciated via the same channel.
Contact Us Now