SECURITY

Our Commitment to Security & Resilience in the UK

 

At Dott, we believe that the freedom of shared mobility must be built on a foundation of absolute digital trust. As our fleet and community have grown, our strategy has remained centered on proactive risk management and maintaining a resilient, transparent environment for every rider.

UK Standards & Certifications

 

We are proud to maintain a security posture that meets:

  • PCI-DSS Compliance: A key milestone is the successful recertification of our PCI-DSS compliance. This confirms that our payment security infrastructure continues to meet the industry standards, ensuring your financial data is handled with the same care as our scooters.
  • Regulatory Alignment: We align our operations with the UK Product Security and Telecommunications Infrastructure (PSTI) Act.

 

Proactive Defense & Governance

 

Our security is not a static checkbox; it is a cycle of continuous improvement:

  • Expert Oversight: Our security posture is governed by a dedicated InfoSec Committee, which oversees internal auditing and strategic planning.
  • Third-Party Validation: To ensure our defenses are battle-tested, we regularly engage external cybersecurity experts for penetration testing of our rider applications and backend systems. This allows us to identify and resolve potential vulnerabilities before they can ever be exploited.
  • Culture of Security: By combining top-tier technical certifications with a culture of “least-privilege” access and ongoing employee security awareness, cybersecurity is woven into the fabric of our daily operations.

 

Quick Links to Compliance Documentation

 

For detailed technical declarations and our vulnerability reporting process, please see the sections below:

 

Vulnerability Disclosure Policy

 

Contact: security@ridedott.info

  1. Reporting: > If you find a security vulnerability in our products or services, please report it via the email above. You do not need to provide personal data to make a report.

 

  1. Our Timeline: > Acknowledgment: We will acknowledge receipt of your report within 5 business days.

 

Status Updates: We will provide progress updates every 30 days until the issue is resolved.