Security
Authentication, RBAC, encryption, isolation, and audit practices.
Plain-English answers about how Service Arc is built, secured, and operated by Aether Mind Studios LLC. No scare tactics — just clear practices.
Service Arc is built for field operations teams that trust software with customer records, locate tickets, damage investigations, invoices, and day-to-day dispatch. This Trust Center explains how we approach that responsibility.
Authentication, RBAC, encryption, isolation, and audit practices.
Support hours, maintenance, incidents, and Open Beta honesty.
Own your data. Admin ZIP export, retention windows, and how account closure works.
What we collect, why, and how we share with subprocessors.
Service Arc runs on Google Firebase and Google Cloud: Authentication, Cloud Firestore, Cloud Storage, Cloud Functions, and Hosting. Access inside your company is controlled with roles and permissions. Significant actions leave audit trails.
Details: Security page.
We host on Google infrastructure. Availability depends on Google Cloud regional health plus our Cloud Functions and configuration. We aim for reliable everyday operations and communicate when maintenance or incidents affect customers.
Your operational data is yours. We process it to run the Service. We do not sell Customer Data. Organization administrators can request a portable ZIP package from Settings → Data Management → Export (CSV + JSON + files, about 7-day download window). See Data Export & Offboarding for formats, exclusions, and the post-term export window.
Traffic uses TLS in transit. Firestore and Cloud Storage encrypt data at rest under Google Cloud.
Email and password for staff users, email verification, password reset, secure invite acceptance, and magic-link style access for the Customer Portal. We do not offer Google or Apple Sign-In today.
Google Cloud durability underpins datastore and storage. We maintain backup and recovery practices described for operators, and we set honest service expectations rather than marketing 100% uptime. See Service Expectations.
If something goes wrong, we triage, contain, restore service, and notify affected customers when their data or access is impacted. Security researchers can report issues to security@servicearcapp.com.
Account and billing data are handled carefully. Your organization remains responsible for the customer and employee data you upload. Full detail lives in our Privacy Policy. Privacy questions: privacy@servicearcapp.com.
If you find a vulnerability, tell us privately at security@servicearcapp.com. Give us a reasonable chance to fix issues before public disclosure.
Service Arc is a multi-tenant SaaS app. Each organization stays scoped to its own records. Modules (work orders, locate operations, CRM, billing, damage investigations, and more) can be turned on or off through Workspace Blueprint and Workspace Configuration so teams only see what they use.
Support: support@servicearcapp.com
Sales: sales@servicearcapp.com
Security: security@servicearcapp.com