SECURITY

Built to protect your project from cyber and ransomware attacks.

Municipal infrastructure is now a top target for ransomware. Most AEC and public-sector systems run on a mix of legacy servers and disconnected cloud tools. Civil Match is safe, fast, secure, and protects your project data as teams form around the work.

01 - THE THREAT

Legacy servers and disconnected cloud tools create the opening.

Infrastructure work often moves through file shares, emailed PDFs, legacy project-management systems, and point cloud tools that were never designed to operate as one protected project environment.

Public-sector and AEC teams are frequent ransomware targets because project records, drawings, specifications, and approvals are operationally critical. Civil Match keeps that threat model visible in the way project access and records are structured.

02 - HOW CIVIL MATCH PROTECTS YOUR WORK

Practical controls for the way infrastructure projects actually move.

Encrypted in transit and at rest.

Civil Match uses platform-managed encryption for project data in transit and at rest through Vercel and Supabase infrastructure controls.

  • HTTPS/TLS protects data moving between users and the application
  • Platform-managed encryption protects stored database and file data
  • Project information is kept inside managed infrastructure built for production workloads

Locked down by role.

Access is enforced at the database level with Postgres row-level security, not only through interface logic.

  • Project, organization, profile, and storage access policies live in the database
  • Users only receive rows their role and project membership allow
  • Sensitive project data stays scoped to the right participants

Recorded by design.

Civil Match includes an append-only project event log with timestamp and actor fields so project history is audit-traceable to who did what and when.

  • The project event model stores actor, event type, payload, and creation time
  • End users have read access through project membership, not direct write access
  • The log is designed to support citable project history as workflows mature

Credentialed humans only.

Civil Match uses passwordless authentication and an approval-gated onboarding flow before project work opens to participants.

  • Passwordless one-time codes reduce shared-password risk
  • Applicant access remains pending until review is complete
  • Professional roles are tied to named accounts, not anonymous participation
03 - CERTIFICATION POSTURE

Built for security review without overstating the record.

Civil Match can describe the controls in place today: encrypted platform infrastructure, database-enforced access policies, project-event audit-log infrastructure, and credentialed access.

Formal certification details are handled during security review. Public copy should reflect completed controls and approved company policy, not schedule commitments.

04 - INFRASTRUCTURE FACTS

The details AEC and public-sector IT teams expect to see.

05 - RESPONSIBLE DISCLOSURE

Report vulnerabilities to the team that can act on them.

Security researchers, AEC IT teams, and public-sector reviewers can report suspected vulnerabilities to security@civilmatch.com.

Civil Match reviews vulnerability reports and acknowledges responsible disclosures promptly. Please include affected URLs, reproduction steps, and any relevant request or response details.

12 - JOIN CIVIL MATCH

Join Civil Match

Match project needs with:

  • Project needs matched around trust
  • Verified civil engineers matched faster
  • Municipalities, utilities, community districts, and architects connected to trusted project partners
  • A safe, fast, secure network that protects your project data
  • Cross-firm teams that scale around the right specialist for each phase

Match civil engineers to project needs faster.

Connect. Introduce. Build. Deliver. Return.

Civil engineers work in teams across firms, not confined to one firm's staff. Civil Match helps the right specialist form around each phase without the overhead of one large bench.