Your safety data,
kept separate and kept safe.
LOTO records are evidence. The system that holds them has to treat separation, access control, and an unbroken audit trail as first principles — not features. Here is how Setyr is built underneath.
Built on six principles
Per-tenant data isolation
Each customer’s sites are kept in separate data stores rather than pooled into one shared database filtered by an account column. One tenant’s data is never a single query mistake away from another’s — separation is structural.
Role-based access control
Operators, supervisors, safety managers, and customer administrators each see and do what their role allows. Permissions are enforced on the server, and access is scoped to the site or organization a user belongs to.
Single sign-on via SAML 2.0
Customers can federate against their own identity provider — Entra ID, Okta, AD FS — so accounts, password policy, and offboarding stay where IT already manages them. Assertions are validated against a pinned IdP signing certificate and protected against replay, and sign-in resolves to the right organization and site automatically.
Second factors that suit the floor
Where a role warrants it, sign-in can require a second factor: a passkey, a code sent to the user’s email, or a one-time backup code. Email codes matter in industrial settings — they are typed rather than tied to a registered device, so a worker on a shared plant tablet is not locked out. A short numeric PIN covers repeated in-shift confirmations without re-entering a full password at the machine.
A tamper-evident record
Execution history is append-only: confirmations and reversals are added as new entries, never silently overwritten. The audit trail reflects what actually happened, which is exactly what makes it trustworthy as evidence.
Secure, controlled file access
Photos and documents are served through short-lived, signed links rather than open URLs, and stored against the tenant and site they belong to — so access to evidence is deliberate, not incidental.
Cloud infrastructure for 24/7 operations
Setyr runs on established cloud infrastructure designed for availability and recoverability. The platform is delivered as a managed service, so customers get updates and security improvements without running servers themselves.
Credentials and secrets are managed centrally rather than embedded in the application, and data in transit is encrypted. The goal is simple: the system is there when a crew needs it, and the data behind it is protected.
Managed service
No servers for you to patch or maintain; updates roll out centrally.
Encrypted in transit
Traffic between users and the platform is protected.
Centralized secrets
Credentials are managed, not hard-coded into the app.
Built to recover
Infrastructure chosen for availability and resilience.
Bring your security questions
If your team has a security or architecture review process, we are glad to walk through how Setyr handles isolation, access, and data protection for your deployment.