Authenticated access only
Every procurement project, quotation and report sits behind an authenticated account. Nothing in the application is publicly readable.
Security & governance
Evalo is an early-stage platform. We describe the controls that exist today and label everything else as roadmap. We do not claim certifications we do not hold.
Every procurement project, quotation and report sits behind an authenticated account. Nothing in the application is publicly readable.
Data is scoped to an organisation. Records carry their organisation, and access is enforced in the database rather than only in the interface.
Database row-level security policies govern who can read or change each record, so a user cannot reach another organisation's data.
Organisation roles separate administrators, approvers and contributors, with approval limits configurable per organisation.
Requirements, quotations, extractions, scores, recommendations and approvals are recorded so a decision can be reconstructed after the fact.
Compliance and ranking are computed by rules from stored data. A model cannot override a mandatory requirement or silently change an outcome.
The following are planned capabilities. They are not implemented today and should not be relied on in a procurement or vendor assessment.
Send it through and we will answer it honestly, including the gaps.