Security - EirePlan
Security & Data Handling
Planning applications involve commercially sensitive information: site details, client strategies, financial arrangements, and pre-application discussions with local authorities.
We designed Eireplan with the assumption that all project data is confidential and should be treated accordingly.
Project and organisation isolation
Eireplan enforces strict boundaries between organisations and projects.
- All data is isolated by organisation. One organisation cannot access another organisation's projects, documents, or settings.
- Within an organisation, users only access projects they have been explicitly invited to.
- There is no cross-organisation visibility. Project data, user activity, and workspace configuration are entirely separate.
These boundaries are enforced at the database level, not just in the application interface.
AI usage boundaries
Eireplan includes AI-assisted features for policy referencing, document analysis, and validation support. These features operate within clear boundaries.
- AI features only access data within the specific project the user is working on.
- No project data is exposed to other organisations or used to inform responses for other clients.
- AI outputs are not shared, aggregated, or reused across organisations.
- Project-specific context remains within that project's scope.
Access control and permissions
Eireplan uses role-based access to control what users can see and do.
Organisation level
Organisation owners and administrators can manage members, invite new users, and configure organisation-wide settings. Members can access projects they are assigned to but cannot modify organisation settings.
Project level
Projects have their own permission structure. Managers control project settings and team composition. Planners have full access to project workspaces. Clients have limited access to specific documents.
Users are only granted the minimum access required for their role. Permissions cannot be escalated without explicit invitation from someone with the appropriate authority.
Data ownership
Your data remains yours.
Organisations retain full ownership of all project data, documents, and outputs created within Eireplan. We do not claim any rights over your content.
Data is stored to provide the service and is not used for purposes beyond operating Eireplan for your organisation.
Our commitment
We take a conservative approach to data handling because we understand what is at stake. Planning data often involves pre-application strategies, client relationships, and commercially sensitive site information.
Our design decisions reflect this:
- Isolation is enforced by default, not as an optional setting.
- Access is granted explicitly, not inferred.
- Features that could compromise boundaries are not built.
We will continue to prioritise data responsibility as Eireplan develops. If you have specific security questions or requirements, we are happy to discuss them directly.
Questions about security?
Contact us directly to discuss your organisation's specific requirements.
