Skip to main content
CraneCheckCraneCheck
Enterprise-Grade Security

Your Crane Inspection Data, Protected

CraneCheck secures your inspection records, compliance documentation, and equipment data with the same standards trusted by enterprise construction companies.

How We Protect Your Data

Security isn't an afterthought — it's built into every layer of CraneCheck.

Encryption at Rest & In Transit

All data is encrypted using AES-256 at rest and TLS 1.3 in transit. Inspection photos, PDF reports, and compliance records are encrypted before storage.

Cloud Infrastructure

Hosted on Vercel and Neon (PostgreSQL) with automatic failover, daily backups, and point-in-time recovery. Infrastructure spans multiple availability zones for 99.9% uptime.

Authentication & Access Control

Powered by Clerk with multi-factor authentication (MFA), SSO support, session management, and role-based access controls. Every API request is authenticated and authorized.

Audit Logging

Every inspection record change, user login, and data export is logged with timestamps, user IDs, and IP addresses. Full audit trail for OSHA compliance reviews.

Data Isolation

Tenant data is logically isolated at the database level. Your crane inspection records, equipment data, and company information are never accessible to other organizations.

Incident Response

24-hour incident response SLA with documented escalation procedures. Security incidents are communicated via email and our /status page within 4 hours of detection.

Compliance & Certifications

Built for the construction industry's most demanding compliance requirements.

OSHA 29 CFR 1926.1412 Compliance

CraneCheck is built to satisfy OSHA record retention and inspection documentation requirements. Inspection records are retained for the life of the equipment plus 3 years, exceeding federal minimums.

ANSI/ASME B30 Standards

Our inspection checklists and data models align with ANSI/ASME B30 series standards for cranes, derricks, hoists, and rigging equipment.

SOC 2 Type II (In Progress)

We are pursuing SOC 2 Type II certification for security, availability, and confidentiality trust service criteria. Target completion: Q3 2026.

GDPR & CCPA

Full compliance with GDPR and CCPA data protection regulations. Users can export or delete their data at any time via account settings or by contacting support.

Data Handling Practices

Transparency in how we store, process, and protect your information.

  • Inspection photos are stored in encrypted cloud storage with geo-redundant replication
  • Database backups run every 6 hours with 30-day retention
  • Point-in-time recovery available for the last 7 days
  • Data export available in CSV, PDF, and JSON formats on request
  • Account deletion permanently removes all data within 30 days
  • No inspection data is used for model training or shared with third parties
  • Stripe handles all payment processing — we never store credit card numbers
  • Third-party vendors undergo security review before integration

Responsible Disclosure

Found a security vulnerability? We take all reports seriously. Please email us at security@cranecheck.co with details. We'll acknowledge receipt within 24 hours and provide a resolution timeline within 72 hours.

Please do not publicly disclose vulnerabilities until we've had a chance to address them.

Stop gambling with paper checklists.

The next OSHA inspector won't accept “we lost that binder.” CraneCheck gives you digital, searchable, audit-proof inspection records — starting today.

Start Free Trial

14 days free · No credit card · Cancel anytime