← Back to dashboard

Security & privacy

Your car's history is personal. Here's exactly how Gigaserv keeps it private and secure — in plain English, no black boxes.

πŸ”’ Encrypted in transit & at rest 🚫 Never sold or shared πŸ”‘ We never see your Tesla password πŸ—ΊοΈ Location stays private πŸ—‘οΈ Delete anytime

Your Tesla connection

We never see your Tesla password

You connect through Tesla's own official login (OAuth). Tesla hands Gigaserv a limited access token — your password never touches our servers. You can revoke Gigaserv's access at any time from the Third-Party Apps section of your Tesla Account, and the connection stops immediately.

The access tokens we do hold are stored server-side in Google Secret Manager (encrypted, access-controlled) — never sent to your browser and never written into our code.

Encryption

Protected in transit and at rest

We never sell or share your data

Your data is yours

Gigaserv does not sell, rent, or share your data with advertisers, data brokers, or any third party. We use your vehicle data for one thing: to power your dashboard and the features you turn on.

Every account is isolated — your trips, charging, and history live under your account alone. Other users (and the people you might share a household plan with) can't see your data unless you explicitly choose to share it.

Your location stays private

Where you drive is never public

Location is some of the most sensitive data a car produces, so we treat it that way. Your routes and parked locations are visible only to you. Any shareable or public car profile we offer is location-stripped by design — lifetime mileage and stats, never where the car has been.

You're in control

Export or delete, anytime

Where your data lives

Built on independently audited infrastructure

Gigaserv runs entirely on cloud platforms that are independently audited to the standards below. We rely on their certified security so your data sits on the same infrastructure trusted by banks, hospitals, and governments.

ProviderWhat it runsIndependent certifications
Google CloudApp, vehicle data, accounts, secretsSOC 1/2/3, ISO 27001/27017/27018, PCI DSS, FedRAMP, HIPAA
Amazon Web ServicesEmail notificationsSOC 1/2/3, ISO 27001, PCI DSS, FedRAMP
CloudflareDNS / networkSOC 2 Type II, ISO 27001

Your data is stored in the United States (Google Cloud, us-central1). These are also our only data subprocessors.

Payments

We never handle your card

When paid plans launch, payments are processed by Stripe (PCI DSS Level 1, the highest tier). Your card details go straight to Stripe — Gigaserv never sees or stores them.

Questions or a security concern?

Found something, or want to know more about how we handle your data? Email security@gigaserv.com — we take reports seriously and will respond.

Gigaserv is built on SOC 2– and ISO 27001–certified infrastructure (Google Cloud, AWS). Those certifications belong to our infrastructure providers; Gigaserv itself is an early-stage product and is not yet independently audited. We tell you exactly what we do and don't do above.