Data & security
This page describes how Jenga360 protects the records you put into it. We have written down only what is true of the system today.
Your company's records stay separate
Every company in Jenga360 has its own workspace. Records, documents and users belong to that company and are not visible to any other company. We test this by creating a second company and checking that it can see none of the first company's data.
Who can see what inside your company
- Each person has their own account. You choose their role: administrator, QS, accountant, site manager, director or viewer.
- You can limit a person to the projects they work on. They then see and change only those projects.
- The viewer role is read-only.
When Jenga360 staff can see your data
Only when your own administrator allows it. A Jenga360 support session:
- needs your administrator to grant it first, for a time they choose (from one hour to seven days), and they can withdraw it at any moment;
- is read-only: every attempt to change something is refused;
- is recorded. You can see who opened it, when, why, and which parts they looked at.
Jenga360 staff accounts for our own administration tools require a second factor (an authenticator app), and what staff do in those tools is logged.
Backups
The database is backed up every day, and a copy is stored off-site. We test that a backup can be restored into a working copy of the system and that the data comes back intact.
Connections
Jenga360 is served over encrypted HTTPS connections, and browsers are told to use HTTPS only.
AI features
Some features use AI to read documents and draft text. When you use one, the content you chose to process (for example a tender document) is sent to an AI provider to produce the result. We currently use Google (Gemini) and OpenRouter. AI output is a draft: you review and approve it before it is used.
Your data belongs to your company
The records in your workspace are your company's. You can ask us for a copy of your company's data, or ask us to close your account, by emailing us at the address in the page footer. We will confirm what we will do and how long it will take.
Reporting a problem
If you think you have found a security problem, please email us at the address in the page footer. Please do not publish details before we have had a chance to fix it.