Security by design
We consider security throughout product design, development, deployment, and operations. Controls are selected based on data sensitivity, system risk, customer requirements, and the changing threat landscape.
Trust center
Maravya takes a risk-based approach to protecting customer and fleet operations data. This overview describes our security direction and does not claim a certification or audit that has not been expressly documented.
Effective August 11, 2026We consider security throughout product design, development, deployment, and operations. Controls are selected based on data sensitivity, system risk, customer requirements, and the changing threat landscape.
Our program is designed around least-privilege access, individual identities, strong authentication, role-appropriate permissions, and review of access to systems that handle customer data.
Maravya’s architecture is designed to protect data in transit and at rest using industry-standard encryption where appropriate. We seek to limit collection and retention to information needed to provide, secure, and support the service.
We use managed infrastructure, dependency and vulnerability management, change controls, logging, monitoring, backups, and environment separation as appropriate to the service and its stage of operation. Security practices are reviewed and improved as our services grow.
Third-party providers and telematics integrations are assessed according to the access they require and the risks they present. Customers remain responsible for configuring their third-party accounts and authorizations securely.
Maravya maintains processes intended to identify, investigate, contain, remediate, and learn from security events. If an incident affects customer information, we will provide notice as required by applicable law and contractual commitments.
Security is shared. Customers should protect credentials, use appropriate access controls, promptly remove former users, maintain secure endpoints and integration credentials, and notify Maravya of suspected misuse.
To report a suspected vulnerability or security incident, email dan@maravya.com with enough detail for us to investigate. Please do not access, modify, or retain data that does not belong to you, disrupt services, or publicly disclose a suspected issue before we have had a reasonable opportunity to respond.