SAPHYROO PLATFORM

Technical Solution
Architecture

A single platform for workforce mobility, fleet operations and AI safety. Prepared for Electromin, a Petromin Corporation company, and reviewed against your Intelligent Transport System scope of work.

Prepared forElectromin · Petromin
EngagementITS solution review
ClassificationCommercial in confidence
This session

Not a second product tour. A look under the hood.

You have the proposal. This session is for your technical team: how the platform is built, how everything connects, where your data lives, how it is secured, and the path to validating it on your own operation.

A

Architecture

One platform. How vehicles, sensors, apps and operations connect.

B

Sovereignty

In-Kingdom residency, security posture and regulatory alignment.

C

Capability

AI safety, video, routing and integration, at engineering depth.

D

Delivery

Requirements traceability, service levels and the validation path.

One platform

Electromin is a configuration of the platform, not a build.

Drive360, Vision360 and Route360 run on one shared data model, multi-tenant and config-driven. Your operation is provisioned as a tenant: your branding, your locale, your region, your rules. You get a product that already runs, configured to how you move, not a system written from scratch.

Drive360

Fleet operations

Dispatch, monitoring, inspections, compliance and the control centre.

Vision360

AI safety & CCTV

On-vehicle driver monitoring, video events and footage management.

Route360

Routing & dispatch

Traffic-aware, vehicle-aware optimisation and predictive pickups.

Arabic and English with full right-to-left, per-tenant branding, and region pinning are platform capabilities, not bespoke work. Customer two is a new configuration, never a new codebase.

Proven in production

A live platform under real operational load.

1,500+
Active users
75k+
Journeys / month
1M+
Shifts processed
100%
Linfox audit score
  • Our headline production scale is in logistics fleets across Australia, one of the most demanding safety and compliance regimes in global transport. The only contractors ever to score 100% in a Linfox audit run on this platform. These figures count operational shifts and journeys on the platform, not seat bookings.
  • Passenger transport runs on the same platform as a first-class configuration, not a fork. The employee-mobility experience is configured and tailored for Electromin during delivery.
Platform architecture

One platform. Many surfaces, one shared core.

Surfaceswho uses it
Passenger appDriver appControl centreAdmin portal
Accessopen by design
REST APISSO · OIDC / SAMLWebhooksHR / ERP
Platform modulesone data model
BookingDispatch & live opsRoutingAI safetyVideoIdentity & accessTenant & configReporting
Data & servicesin-Kingdom
DatabaseObject & video storageCache & queueEvent pipeline
Edge / vehicledevice to cloud, ours
AI & CCTV camerasTelematics & VLUSensors & CANConnectivity

Every surface is the same platform, multi-tenant and config-driven. Electromin is a tenant: modules switch on per your scope, data flows up from the vehicle, configuration flows down. No module is a silo, and nothing here is bespoke to one customer.

User journeys

One platform, tailored to each person who uses it.

PassengerEmployee app
Book a seatBooking
See vehicle & ETALive ops
Check in by QRIdentity
Ride, trackedAI safety
ArriveReporting
DriverDriver app + in-cab
Start shiftIdentity
Receive the runDispatch
Guided navigationRouting
Safety watchingAI safety
CompleteReporting
DispatcherControl centre
Plan the dayDispatch
Assign vehiclesDispatch
Monitor live mapLive ops
Triage incidentAI safety
Close it outReporting
ManagerReporting & HSE
UtilisationReporting
Safety trendsAI safety
Audit recordsAudit log
Decide & reportReporting

Every persona rides the same modules from the platform architecture, scoped to their role and their data. Administrators provision and govern through the same platform via SSO. One platform, four experiences.

One journey, end to end

Eyes on every trip, from booking to arrival.

1

Book

Seat reserved in the app, in seconds

2

Assign

Vehicle, driver and route allocated

3

Board

QR check-in confirms who is aboard

Watched

Live track, AI safety, one-touch SOS

5

Arrive

Arrival confirmed, trip logged for audit

Designed for everyone, including women travelling at night. The ride is tracked live, safe-reach check-ins run in the background, and one-touch SOS reaches the control centre instantly, with the vehicle's cameras already recording. If a vehicle drops offline, operations is alerted and the trip keeps recording until it reconnects.

The product

Real software, in your people's hands.

Saphyroo
Book a seat · today
Accommodation → Plant HQ
Shuttle · 32 seatsETA 07:14
06:3007:0007:30
Book seat
● Live tracking · SOS on hand
Control centre · live
Harsh braking · Bus 14Flagged · under review
Route 7 arrivedOn time · 31 aboard
Check-in complete · Shuttle 328 of 32 seats

The employee app and the control centre, one platform, branded for Electromin and localised in Arabic and English. Representative of the Electromin configuration; the live system is shown in the session.

In-country architecture

Your data lives and is processed in the Kingdom.

Employee app Control centre Management reporting
Kingdom of Saudi Arabia · Sovereign region — Dammam → Riyadh
Ingest

Device endpoint

Compute

Application & API

Data

Database

Storage

Object & video

Intelligence

AI event processing

Buses Shuttles Cars On-vehicle sensors & cameras
Maps & routing no personal identifiers Push no PII in payload SMS in-Kingdom gateway Identity federated to your IdP
•  The few services that touch the outside are controlled crossings: each carries no personal data, or is federated to your own identity provider. The full cross-border register is worked through in technical validation.
Data residency

Your data lives in the Kingdom, from day one.

  • Deployed on a sovereign in-Kingdom region in Dammam at go-live, migrating to AWS Riyadh on its general availability. Region portability is built into the platform.
  • Residency is enforced from the device up. Vehicles connect to an in-Kingdom endpoint, reconfigurable over the air, so no data crosses regions. Not just an application-layer promise. This is the story commodity trackers cannot tell.
  • Every read and write is pinned to your contracted region in the data model itself. No cross-region movement for convenience, by policy.
  • Data ownership stays with Electromin, exportable at any time. Aligned to PDPL, the NCA Essential Cybersecurity Controls, and CST data-residency expectations.
Security posture

Secured by design, and built to evidence it.

Identity

Federated, short-lived

Enterprise SSO into your identity provider. Sessions issue short-lived signed tokens, never long-lived credentials.

Access

Role-scoped, every route

Least privilege by default. Every write route is catalogued and access-checked. New routes cannot ship without it.

Audit

Who, what, when

Every authenticated change is logged to an immutable, PII-scrubbed trail. Retained as compliance evidence.

Encryption

In transit and at rest

TLS everywhere, encrypted storage, managed keys. Video and footage encrypted with access logged.

Secrets

Managed, rotated

No credentials in code. Secrets are fetched at boot from a managed vault, scoped and time-bound.

Observability

Traced and monitored

Structured logs with trace, user and tenant context. Errors captured with release tags, uptime probed continuously.

We build the controls so a security questionnaire is answered "yes, with evidence." We do not claim certifications we do not hold.

Resilience

Built to keep working when the network does not.

01

Buffer

The vehicle keeps recording and tracking offline, storing locally.

02

Sync

Data uploads automatically the moment connectivity returns.

03

Alert

Operations is notified if a vehicle drops offline, so gaps are visible.

04

Recover

Multi-zone database with point-in-time recovery and disaster recovery.

No data loss

A vehicle in a dead zone loses nothing. Footage and telemetry reconcile on reconnect.

Availability

Continuously probed, with a live status page and availability evidence on demand.

Scale

The same platform serves a ten-vehicle pilot or a Kingdom-wide fleet.

AI safety

From camera to coaching, a managed workflow.

01

Capture

Road, cabin and surround cameras record continuously on the vehicle.

02

Detect

On-vehicle AI flags fatigue, distraction and unsafe events in real time.

03

Warn

The driver hears an in-cab audio alert the moment a risk is detected.

04

Escalate

The event reaches the control centre as an alert with video context.

05

Act

The team reviews, investigates and coaches. Trends build by driver and vehicle.

Detection runs at the edge so a warning reaches the driver without waiting on the network. The platform turns raw events into a safety record your managers can act on.

Video management

Continuous recording, retained to your policy.

  • Continuous recording held on the vehicle, with full footage retained to your agreed window. A 60-day policy is supported.
  • Safety events and clips synced to encrypted, sovereign cloud storage for review and investigation. You hold footage long-term without paying to stream every hour off every bus.
  • Search and playback by vehicle, date and time. Authorised, role-based access with every retrieval logged.
Why hybrid

Full footage stays on the vehicle where it is cheap to keep. Events and requested clips move to the cloud where they are needed.

This gives you the retention you asked for, encrypted and in-Kingdom, without continuous-upload storage costs inflating the bill.

Intelligent routing

Predictive dispatch, backward from arrival time.

Tell the platform when staff must arrive. It works backwards through live and historical traffic to set the pickup, and plans the run against each vehicle's real dimensions.

Plan

Optimised assignment

Which vehicle serves which stops, in what order, inside every time window and capacity.

Traffic

Live and predictive

ETAs use live traffic inside the hour and predictive patterns further out, automatically.

Vehicle-aware

Routes that fit

A coach and a van get different paths. Height, weight and class are honoured in the route itself.

This is a production routing capability, validated continuously against the live mapping engine, not a roadmap line. Arrival accuracy is baselined on your routes during the pilot and improved on the record.

Carpool & self-drive

Shared rides and a self-drive poolPhase 2

Colleagues matched into shared rides by route and schedule, plus a pool of vehicles staff book and self-drive, unlocked from the phone. Delivered in the rollout phase, after the core platform is proven.

01

Match

Paired with colleagues by route and schedule, or a pool vehicle reserved.

02

Book

A shared ride or a self-drive booking, with manager approval where needed.

03

Unlock

Keyless access from the phone at pickup. No keys, no desk.

04

Return

Drop at an approved zone. A geofence confirms the return.

05

Logged

Usage, access and trip recorded for audit and billing.

Architecture · provider-agnostic vehicle access

We own the booking, the access grant, the unlock experience and the audit trail, the parts that carry your value and your compliance. The keyless hardware sits behind a single interface, so the same flow works across vehicle types without re-engineering per vehicle. You are never locked to one access vendor.

Open by design

One accountable vendor. Zero lock-in.

APIs

REST, documented

Open REST APIs with a published specification for your systems to build against.

SSO

OIDC & SAML

Federate into your identity provider, including Entra ID, with provisioning.

Events

Webhooks

Subscribe your HR, ERP and operations systems to platform events.

Data

Yours, exportable

Full ownership and export of your data, at any time, in standard formats.

A single accountable partner across the stack does not mean a closed system. Integrated by design, never locked in.

The onboard system

A complete onboard stack, supplied and supported.

See

Camera suite

AI driver monitoring, interior and exterior CCTV, blind-spot and reverse, specified per vehicle type.

Sense

Vehicle unit

Telematics and black box, GPS, CAN access for vehicle and battery data, in-cab audio.

Connect

Connectivity

Managed SIM and onboard Wi-Fi hub linking cameras, screens and tracking.

Inform

Displays

LED destination boards, passenger screens, and off-board waiting-area countdowns.

Identify

Check-in

QR and biometric readers at the door, tied to the journey and the vehicle.

Accountable

We own the path

Device to cloud to app. We specify the hardware, run the ingest ourselves, and enforce residency at the device level.

Most fleet platforms resell telematics hardware they do not control. We own the device-to-cloud path end to end, which is why we can stand behind one number for safety, uptime and residency. Exact makes and models are specified with our hardware partners at design, matched to your vehicle types and Kingdom type-approval.

Requirements traceability

Every requirement, mapped to a response.

Your requirement (SOW)Platform responseStatus
Seat booking & check-in

Branded employee app, SSO, QR / biometric check-in, waitlist

Configured
On-demand vehicle ordering

Request by vehicle type, pickup / destination, approval

Phase 2
Real-time tracking & ETA

Live map, arrival alerts, push and SMS

Live
Telematics & driver monitoring

Vehicle unit, AI safety, in-cab audio alerts

Live
Predictive dispatch

Traffic-aware, arrival-time backward scheduling

Live
Carpool, self-drive & keyless access

Matching engine, keyless vehicle access, digital checkout

Phase 2
Interior & exterior CCTV + retention

Continuous on-vehicle, encrypted sovereign cloud

Live
Onboard & off-board hardware

Cameras, displays, Wi-Fi, countdown boards, readers

Configured
Open APIs & SSO

REST, OIDC / SAML, webhooks, data export

Live
In-Kingdom hosting & security

Sovereign region, PDPL / NCA / CST alignment

Live

Live runs in production today. Configured is a platform capability set up to your operation during delivery. Phase 2 is sequenced into the rollout after the core is proven. Full clause-by-clause matrix provided in technical validation.

Service levels

Numbers we prove, then improve on the record.

99.5%
App uptime, evidenced
98%
Device health, monitored
24/7
Support & incident response
DR
Multi-zone, recovery targets
  • Application uptime is monitored now, with a live status page and availability evidence on request.
  • Arrival-time accuracy is baselined on your routes during the pilot, then ratcheted to target. We contract numbers we can stand behind on your data.
  • Service credits defined, with liability capped at a percentage of fees. No penalty numbers we cannot evidence.
Delivery model

A deployment programme, not a software project.

01

Mobilise

Confirm scope, plan the rollout, stand up your tenant and environment.

02

Configure

Set the platform to your structure, branding, policies and integrations.

03

Deploy

Fit and commission vehicles site by site, train drivers and dispatch.

04

Scale

Roll out across the fleet in planned phases, on proof.

The platform is already live and proven. This engagement configures and deploys it for Electromin. We are not building it from scratch, and you are not the test of whether it works.

The path forward

Prove it on your operation, then scale on results.

01

Technical validation

A working session with your team on architecture, security, residency and integration. We answer the questionnaire with evidence.

02

Pilot

A fixed-scope pilot on a defined subset, with success criteria agreed up front. You see the system on your own data.

03

Phased rollout

Scale across the fleet in stages, on proof, through to your 2030 targets.

One platform. One operational view. One accountable partner, committed to the Kingdom for the long term.

منصّة واحدة. رؤية تشغيليّة موحّدة. شريك واحد مسؤول، ملتزم بالمملكة على المدى الطويل.

How the product works

Reference detail. Jump here when the room goes deep.

Plain-language mechanics for each capability, the service levels, and the onboard fit. Not presented in sequence, used to answer questions with confidence.

How booking & check-in works

Staff book a seat like booking a flight.

01

Browse

Routes and times for their site, in the app.

02

Reserve

Book a seat or join a waitlist. Recurring shifts supported.

03

Sign in

SSO with their work identity. No separate password.

04

Check in

QR or biometric at the door confirms boarding.

05

Manifest

Driver and control centre see who is aboard, live.

What to say: your people self-serve their transport, and you always know exactly who is on which vehicle, for safety and for headcount.

How tracking & alerts work

Live on a map, with arrival alerts.

01

Locate

Vehicle GPS streams to the platform every few seconds.

02

Map

The passenger sees the vehicle live, with a real ETA.

03

Approaching

A geofence detects the vehicle nearing the pickup.

04

Notify

Push and SMS at 15, 10 and 5 minutes out.

05

Arrive

Arrival confirmed and logged for the record.

What to say: no one waits in the heat guessing. They get told when their ride is coming, on the app and by text.

How AI safety works

The AI watches so the team can act.

  • Cameras watch the road and the cabin continuously.
  • On-vehicle AI flags fatigue, distraction and unsafe events as they happen. Detection runs on the vehicle, so it works even with no signal.
  • The driver gets an immediate in-cab audio warning.
  • The event and a video clip land in the control-centre queue.
  • Managers review, coach, and track trends by driver and vehicle. Raw events become a safety record you can act on.
How video & CCTV works

Record everything, keep what matters, find it fast.

  • Continuous recording is stored on the vehicle, retained to your window. A 60-day policy is supported.
  • Safety events and requested clips sync to encrypted, in-Kingdom cloud storage.
  • Authorised users search and play back by vehicle, date and time.
  • Role-based access, every retrieval logged, footage auto-purged on expiry. Keeps cost sane and the chain of custody clean.
How routing & dispatch works

Work backwards from when staff must arrive.

  • You set the mandatory arrival time for a site.
  • The engine schedules pickups backwards through traffic to hit it.
  • Live traffic within the hour, predictive patterns further out, chosen automatically.
  • Routes respect each vehicle's size and type. A coach and a van get different, legal paths.
  • It re-plans when conditions change and flags any stop it cannot reach.
How integration & access works

It slots into your systems. You keep your data.

  • Open REST API with a published specification for your team to build against.
  • SSO via OIDC or SAML into your identity provider, including Entra ID, with SCIM provisioning.
  • Webhooks push platform events to your HR, ERP and operations systems.
  • Eligibility and seat entitlement from HR; billing and chargeback to ERP.
  • Full ownership and export of your data, at any time. Integrated by design, never locked in.
How hosting, residency & security work

In the Kingdom, secured, and recoverable.

  • Hosted on an in-Kingdom region, Dammam now, migrating to AWS Riyadh on its general availability.
  • Residency enforced from the device up; only controlled crossings leave, and they carry no personal data or are federated to your identity.
  • Encryption in transit and at rest, with managed keys. Short-lived signed tokens, role-scoped on every route.
  • Every authenticated change recorded to an immutable, PII-scrubbed audit trail.
  • Multi-zone with point-in-time recovery and disaster recovery. Aligned to PDPL, NCA and CST.
Service levels

What we commit to, and how we measure it.

Service levelTargetHow it is measured
Application uptime99.5%

Monitored, with a live status page and evidence on request

Device / camera uptime98%

Per-device health monitoring

Telematics ingestBaselined at pilot

Latency monitored end to end

Arrival-time accuracyBaseline → target over the pilot

Measured on your routes, ratcheted on the record

P1 incident response24/7, defined targets

Severity-based response and resolution

Disaster recoveryDefined RPO / RTO

Multi-zone, point-in-time recovery

Service creditsCapped % of fees

Defined in the contract

We contract numbers we can evidence on your operation. Final figures are set in the agreement; pricing and commercial terms sit with the founders.

Onboard fit by vehicle type

Specified to the SOW, per vehicle type.

Vehicle typeCamera fit (to SOW spec)Also fitted
15-seat van

1 interior + 1 reverse

AI DMS + in-cab audio, GPS / telematics, SIM, QR / biometric reader

33 to 49-seat bus

2 to 3 interior dome + 2 exterior blind-spot

As above + LED destination board, passenger Wi-Fi, 1 to 2 info screens

Accommodation hubs & waiting areas

n/a

Off-board live next-bus countdown displays

Counts follow your SOW. Exact makes and models are specified with our hardware partners at design, matched to Kingdom type-approval. We own the device-to-cloud path end to end.