Security & privacy

Written for the person who has to review us.

If you are in IT, procurement, or a privacy office, this page is for you. It says what we collect, where it lives, who else touches it — and what we do not have yet, because you would find that out anyway and it costs less coming from us.

Last updated 7 August 2026 · questions to support@tesserapark.com

The short version

No integration. Tessera does not connect to your student information system, your permit database, your card system, or your network. There is nothing to wire up, which means there is very little to review.

No license plates. We do not read, store, or process plate numbers or vehicle details.

No sale of data, no advertising, no analytics or session-replay tools. There is no third-party tracking code in the product.

What we collect

An account is an email address, a username, a campus, and an affiliation — student, staff or faculty, which decides which permit zones the app shows. A university email address is optional and used only to display an affiliation badge.

Activity is lot reports (lot, status, timestamp) and visits (lot, arrival, departure), which is what produces the demand and dwell-time figures.

Location: when a person taps to check in, and only then, we record the position their device reports. There is no background tracking and no trail between lots. Those coordinates are erased automatically after 90 days, and immediately if the account is deleted.

Where it lives, and who else touches it

ProcessorPurposeWhat it receives
SupabaseDatabase, authentication, file storageAccount and activity data. US region
VercelHosting, scheduled jobsRequest traffic, IP addresses, logs. US region
ResendTransactional emailRecipient address, message contents
AnthropicReads a typed report like "Lot 42 is full"That one sentence and the campus lot list. No identifier, no email, no location
StripeMerchandise shop paymentsPayment details, shipping address. Nothing about parking
PrintfulMerchandise fulfilmentRecipient name and address. Nothing about parking

Data is encrypted in transit and at rest. Stripe and Printful receive nothing at all from anyone who never places a shop order.

Access and retention

What we do not have yet

Because you will ask, and a gap you hear from us is cheaper than one you find.

  • No multi-factor authentication, for users or for our own staff accounts. Sign-in security currently rests on the security of the email account. This is the most significant item on this page.
  • No SOC 2 or ISO 27001 audit, and no third-party penetration test. We are early, and an audit before a first paying customer would be theatre. A targeted penetration test is the better first spend and is the one we intend to make.
  • No accessibility conformance report (VPAT). A map-first interface at a public university deserves a real assessment and has not had one.
  • No uptime SLA with service credits. We are a small team with no 24/7 rotation, and an SLA we cannot staff is a promise we would be caught on.
  • Cross-institution isolation is enforced in the application, and is being moved into the database. That work lands before any second university's accounts exist — not after.

What we will do for your review

Ask us the hard one.

If something here is not enough for your institution, tell us which part. We would rather know now than at the end of a procurement cycle.

Email support@tesserapark.com