paxwhere

Security

A focused product with a deliberately small security surface.

PaxWhere protects the Operations workspace while keeping the passenger journey simple and account-free. These safeguards describe the current product without making unsupported compliance claims.

Secure passenger links

Each public passenger link contains a booking-specific random token. It exposes only its associated booking and requires no passenger account.

Protected Operations

Operations pages and write actions require authenticated, authorized company access. Authorization is enforced on the server for every request.

Tenant isolation

Bookings and events are read and changed only within the authenticated operator’s company boundary.

Timestamped history

Passenger and operational events are appended to the booking timeline. Editing does not overwrite the historical event stream.

Safe removal

Removing a booking disables its passenger link and removes it from operational views while retaining the booking and event history in storage.

No location tracking

PaxWhere displays passenger-declared progress. It does not collect GPS coordinates or continuously track a passenger’s location.