Security
JoinEcoGrow is built so that environmental records are traceable, attributable, and ready for council-side review. The platform takes a deliberately conservative approach to data handling.
Connections use TLS, and stored records are encrypted at rest by the underlying managed infrastructure (Supabase / PostgreSQL).
Field activity, timestamps, and location context are linked to each record so reviewers can trace what changed and when.
Workspaces are scoped per organisation, and authentication is required for every product-app surface (app.joinecogrow.com).
Reporting workflows produce structured outputs designed for environmental and compliance review, not opaque exports.
Records inside JoinEcoGrow are designed to support reviewer checks. Each tree or green-asset record can be linked to the field activity that captured it, the location context, and the verification step that confirmed it. This is the basis of the platform's audit trail — accessible inside the product workspace by authenticated council and land-manager users.
Reporting concern or vulnerability
If you believe you have found a security issue affecting JoinEcoGrow, please email founder@joinecogrow.com with details. Please do not publicly disclose the issue while we investigate.