Security and data handling

Plain-English descriptions of the controls in Firework OS, with no certifications or guarantees we haven't earned.

Security & trust

Controls that are actually implemented—stated plainly.

Fireworks operations carry real responsibility, so the description below is limited to controls built into the platform. Firework OS is software and does not provide legal, regulatory, or compliance advice.

Secure authentication

Every user signs in with their own credentials—no shared logins passed around the crew.

Authenticator-app MFA

Multi-factor authentication using a standard authenticator app.

Role-based access

Permissions follow the role: administrator, lead shooter, shooter, driver, setup crew, safety, firing operator.

Module-level access

Modules a company or user isn't entitled to stay hidden and inaccessible rather than shown and blocked.

Company-level data separation

Each company works in its own tenant workspace with isolated company data.

Database access policies

Access rules are enforced at the database, not only in the interface.

Private document storage

Crew documents, licenses, and certifications are stored privately, not in a shared drive.

Encrypted connections

Traffic between devices and the platform is encrypted in transit.

Traceable audit history

Changes are recorded as history rather than overwriting prior records.

Two-person load verification

Sensitive load actions can require verification by a second qualified person.

FAQ

Common questions

Who owns our operational data?
Your company does. Records live in a company-isolated workspace, and you can request an export of your data.
Can we export our records?
Yes—export needs vary by operation, so we scope the formats and records you need during onboarding.
How is access controlled?
Users sign in with their own credentials and can use authenticator-app MFA. Permissions follow roles, and modules a company or user isn't entitled to stay hidden and inaccessible.
Does Firework OS hold SOC 2, ISO 27001, or HIPAA certification?
No. We describe only the controls implemented in the platform. Any certification would be stated here only after it is independently verified.
Does the platform guarantee ATF or DOT compliance?
No. Firework OS provides recordkeeping tools oriented around those record types. Compliance responsibility remains with your company, and the platform does not provide legal or regulatory advice.
How does onboarding and support work?
Onboarding and support are handled directly by our team and scoped to your operation during the demo—we don't publish response-time guarantees we haven't committed to.

Book a demo

See your operation running in one system.

We'll walk through shows, crews, inventory and magazines, transportation paperwork, and reporting using the workflows your team already follows.

Or email hello@fireworkos.com