BV Field App™ by Olive on Main Design Studio, LLC

Security

BV Field App handles customer data, payment information, photos, and signed contracts. Here’s how we protect it.

🔒

Encryption in Transit

All data transmitted between your device and BV Field App is encrypted using TLS/SSL. Every page, form submission, and API call is served over HTTPS.

🗄️

Encryption at Rest

Customer data, photos, documents, and configuration files are stored on encrypted cloud infrastructure. Data is encrypted at rest using AES-256 standards.

💳

PCI-Compliant Payments

Payment processing is handled entirely by Stripe, a PCI Level 1 certified payment processor. BV Field App never stores, processes, or transmits full credit card numbers or bank account details on our servers.

🔑

Access Controls

Each user account is scoped to your company’s data. Team members access only the information relevant to their role. Administrative controls let you manage who has access.

✉️

Passwordless Sign-In

BV Field App uses magic link authentication. Users sign in by receiving a one-time link via email — no passwords to create, remember, or have stolen. Links expire in 15 minutes and can only be used once.

Photo and Document Storage

Interior and exterior photos captured through BV Field App are stored securely in cloud infrastructure and associated with the corresponding appointment record. Photos are accessible only to authorized users within your company account. Quote documents, signed contracts, and acceptance records are stored with the same protections.

Electronic Signatures

When a customer signs on-screen, BV Field App captures the signature along with a timestamp, the customer’s IP address, and the document version accepted. This creates an auditable record for your compliance and contract management needs.

Infrastructure

BV Field App is hosted on modern cloud infrastructure with redundant systems, automated backups, and monitoring. We apply security patches and updates on a regular cycle. Our hosting providers maintain their own compliance certifications, including SOC 2 and ISO 27001.

Incident Response

In the event of a security incident that affects your data, we will notify affected customers promptly and provide details about the nature of the incident, what data was involved, and the steps we are taking to address it, in accordance with applicable laws.

Your Responsibilities

Security is a shared effort. We recommend that you promptly remove access for team members who leave your organization and ensure that the email addresses associated with your accounts are secure and up to date, since sign-in links are delivered via email. If you suspect unauthorized access to your account, contact us immediately.

Questions

If you have questions about our security practices or want to report a security concern, contact us at:

Olive on Main Design Studio, LLC
Email: [email protected]
Website: bvfieldapp.com