Security
Last updated: August 2026
We treat the fixture, claims, and operational data our customers trust us with as sensitive by default. Our security practices are guided by the Australian Cyber Security Centre's (ACSC) Essential Eight framework and our obligations under the Privacy Act 1988 (Cth).
Data protection
- Data encrypted in transit using TLS
- Access to customer data restricted on a least-privilege basis
- Regular review of access permissions as team roles change
Application security
- Application patching kept current, in line with Essential Eight patch management guidance
- Multi-factor authentication available on customer accounts
- Application hardening and restricted administrative privileges
Incident response
We maintain a process for identifying, containing, and notifying affected customers of any security incident, consistent with our obligations under the Notifiable Data Breaches scheme administered by the OAIC.
Ongoing improvement
Security is an ongoing process, not a one-time certification. As we grow, we will continue to align our practices with recognised Australian and international frameworks and will update this page as our posture matures.
Report a concern
If you believe you've found a security issue, please email us at frubrick.business@gmail.com and we'll respond promptly.