We take the security of our own data and our clients’ data seriously. Here’s what you control, and what we do to protect it.
Everything you put into CORE-GS, and everything you create with it, belongs to you — and it sits on your own infrastructure, under your own security controls.
So you can try CORE-GS without standing up a server first, we host your 30-day evaluation database on Azure SQL Database. We show you how to export your data before the trial ends, keep it for 30 days afterwards, then delete it.
Your data is encrypted in transit and at rest.
Users and service accounts authenticate individually, against your identity provider or an invitation issued to them by name. No shared credentials.
Access control is applied on the server for every request, so you only ever receive data you’re permitted to see.
Every trial gets its own database. We never use your data for another customer, or pool it with theirs.
Our staff can only reach what they need to run the service or handle a request from you, and that access is logged. If anything ever affects your data, you hear from us within 48 hours. We’re happy to work through a supplier security questionnaire — just ask.
We’re a small team and we know the risks that come with internet-connected software and remote support. So access is never assumed — it’s something you grant, on the record, and can take back at any time.

Project records often contain personal information — who logged a hole, who was on site, the contacts on a job. We handle it under the Privacy Act 2020, use it to provide the service and nothing else, and name our subprocessors rather than changing them quietly.
CORE-GS checks your licence with our Client Portal, and that check carries details of the machine, your database setup and the signed-in user. We use it to run licensing and support you — never for market research, competitor analysis, benchmarking between customers or training models. Ask us and we’ll send you the full list of what’s sent.
Talk to us about how CORE-GS fits your organisation’s security and IT policies.