Your data. Protected like it's ours.
Dealers trust AlgoDriven with appraisal, customer and pricing data every day. That trust is independently verified — SOC 2 Type 2 and ISO 27001 — and continuously monitored, not audited once and forgotten.
SOC 2 Type 2
Independently audited by Sensiba against the AICPA Trust Services Criteria — controls tested over a monitored period, not a point-in-time snapshot, with a fresh report every year.
ISO/IEC 27001:2022
Our information security management system — covering EvalExpert, DriveExpert, InspectExpert, Insights and our APIs on AlgoDriven Cloud — is certified by Sensiba Australia.
Certificate 202602-206 · Valid to Feb 2029 · Validate via iso@sensiba.comHow we protect your data.
Encrypted everywhere
Data is encrypted in transit (TLS) and at rest. That covers appraisals, customer records, images and API traffic.
Least-privilege access
Role-based access controls, MFA and formal access reviews. Staff see only the data their job requires.
Continuous compliance
Controls are monitored 24/7 through Drata — evidence is collected automatically, so our posture is verified every day, not once a year.
Independent audits
Recurring third-party audits by Sensiba keep our SOC 2 attestation and ISO 27001 certification current.
Your data stays yours
Your appraisal and customer data is never shared or sold. It's your asset — we just keep it safe and useful.
Built to stay up
Hosted on AWS with redundant infrastructure, tested backups and a documented incident response process across every region we serve.
Built for groups, OEMs and banks — not just single rooftops.
Beyond the certifications above, the platform fits the way large organisations run IT: centralised identity, tight access control, full accountability and open APIs.
Single sign-on
Microsoft Entra ID (Azure AD) integration. Staff sign in with the credentials they already use — and when someone leaves, your IT team revokes access centrally.
Automated user provisioning
SCIM provisioning from your identity provider. New starters get access automatically, leavers are deactivated the moment IT offboards them — no manual account admin.
Multi-factor authentication
MFA across the platform, so a stolen password alone never gets anyone near your appraisal and customer data.
Full audit trail
User actions are logged — who did what, and when. The accountability your managers, auditors and compliance team expect.
Full API access
Documented REST APIs across the platform — appraisals, pricing, VIN decode and vehicle movements — so data flows into the systems you already run. Explore the APIs →
Roles & permissions
Role-based permissions by user and site, so a group valuer, a sales manager and head office each see exactly what they should — no more, no less.
Annual penetration testing
Independent security specialists attack the platform every year — findings are remediated and verified, on top of the continuous monitoring above.
Group-wide rollouts
Multi-site, multi-brand and multi-country from day one — 1,200+ showrooms in 14 countries already run on the platform.
Running a vendor review?
We'll make it easy. Our SOC 2 Type 2 report, ISO 27001 certificate and supporting documentation are available under NDA — usually same-day.
Found a vulnerability?
We appreciate responsible disclosure. If you believe you've found a security issue in an AlgoDriven product or service, email security@algodriven.xyz with enough detail to reproduce it. We'll acknowledge your report promptly and keep you informed as we investigate. Please don't access data that isn't yours or disrupt service to other customers while testing.
Security questions? Ask them live.
Bring your IT or security team to the demo — we'll answer everything on the spot.
Book a demo or email sales@algodriven.xyz