Privacy, GDPR & Security. Check.
No worries: privacy by design, information security, roles and permissions and the required documentation are built into the setup.

No worries. We stay on top of it.
Cartracker helps organisations use vehicle data responsibly, securely and with clear control. The technology, processes and documentation for internal review are ready.
GDPR
Privacy by design, purpose limitation and access through roles and permissions.
Information security
ISO 27001-certified management system, logging, monitoring and periodic penetration testing.
Privacy risks
A DPIA is available as a basis for the organisation’s internal privacy assessment.
Trip logging & tax compliance
Dutch Trip Registration Systems Quality Mark and a setup suitable for business vehicle administration.
Not everyone sees everything.
Modules can be switched on or off, roles and permissions can be configured in detail, and private trips are shielded: no route and no timestamps, only that a trip took place and the number of kilometres.
Who decides what?
Cartracker provides
Security by design, technical safeguards, certification, DPIA, roles and permissions and supporting documentation.
Your organisation decides
Purposes, enabled modules, access, internal rules for live location and driving behaviour, and communication with employees and the Works Council.
Voor Privacy, HR, OR en Compliance
Interne beoordeling? Deel direct de relevante onderbouwing met de juiste stakeholder.
The evidence is ready.
ISO 27001, ISO 9001, ISO 14001, the Trip Registration Systems Quality Mark, DPIA, Works Council documentation, driver information and the roles/permissions matrix are available for internal review.
Privacy is not an afterthought.
Cartracker is designed so organisations can deliberately choose which functionality is needed, which data is visible and who gets access. Modules can be switched on or off, roles and permissions can be configured in detail, and private use is treated differently from business trips.
Private trip
For a private trip, no route and no timestamps are shown. Only that a trip took place and the number of kilometres remain visible. Live location is not part of the private view either.
Business / private automatically
Trip modes can be selected manually or automated using schedules and points of interest (POIs), for example private before or after a certain time and during weekends.
From standard role to your own access model.
Cartracker has three standard roles — Superadmin, Fleetadmin and Driver — and a fine-grained permissions matrix with 82 separate permissions. Standard roles are a starting point. Create custom roles and decide exactly who may view or use live location, trip details, reports, user management or settings.
Least privilege
Give employees access only to the vehicles, functions and data they need for their role. This makes internal privacy and information-security policy practical to apply.
Purpose-based configuration
Use only modules and information that fit the organisation’s purpose. Cartracker provides the capabilities; your organisation determines how they are used and governed internally.
Clarity about vehicle and trip data.
Depending on the modules used, Cartracker can record vehicle and trip information for trip logging, fleet management and insights. This can include kilometres driven and trip mode and, where enabled, driving-behaviour information such as speed and braking. Organisations decide which functions to activate and which employees may view the related information.
Internal review does not have to start from scratch.
Documentation is ready for Privacy, Security, IT, Procurement, HR and the Works Council, including ISO 27001, ISO 9001, ISO 14001, the Trip Registration Systems Quality Mark, DPIA, Works Council documentation, the driver guide and the full Roles & Permissions matrix.
