Security
PaxRelay is designed around tenant isolation, least privilege, controlled integrations, data minimization and a traceable record of actions. Security representations are limited to controls that are implemented and verified.
Certifications or independent attestations are not claimed unless they have been completed and can be substantiated.
Security requirements are considered in data boundaries, integration design, access control and operational workflows. Controls still need to be tested in the environment where they run.
Passenger and operational data should be limited by purpose, retained only as required and kept out of logs, analytics and unrelated systems.
Certifications or independent attestations are not claimed unless they have been completed and can be substantiated.
We can discuss data flows, access boundaries, integration authentication and the evidence your technical review requires.