Security
Locked down like the backstage door
Touring data includes routes, rates, driver records and client schedules. ShowTime treats every one of them as need-to-know.
Security pillars
Single sign-on with Keycloak
Every workspace authenticates through Keycloak using OpenID Connect. ShowTime never stores passwords, MFA policy lives with your identity provider, and offboarding a user happens in one place.
Isolated company workspaces
Each company runs on its own subdomain, such as rtg.showtimetms.com, with its own realm, sessions and data. One tour company's records are never a filter away from another's.
Server-enforced roles
Owner, dispatcher, accounting, safety, sales and driver roles are checked on the server for every request, not just hidden in the interface.
Sensitive fields stay hidden
Pay rates, tax forms and owner-operator settlements are stripped from responses for roles that can't view them, including inside Standby.
Complete audit trail
Changes to movements, rates, documents and users are logged with who, what and when, so disputes are settled with a record instead of memory.
Encrypted in transit
All traffic is served over HTTPS with strict transport security, and shareable tracking links are scoped to a single movement and expire when the job ends.
How sign-in works
From showtimetms.com to your workspace
The sign-in page on this site hands off to the Keycloak instance already running for your company. No second set of credentials.
- 01
Choose workspace
Visit showtimetms.com/login and select your company.
- 02
Redirect to Keycloak
You are sent to your company's Keycloak realm to authenticate.
- 03
Sign in your way
Password, MFA or your corporate IdP, as your admin configured it.
- 04
Land in ShowTime
Keycloak returns you to your workspace with a short-lived session.
Security questions or a vendor questionnaire? security@showtimetms.com
Places, please.
Already on a ShowTime workspace? Sign in with your company account. Planning your next tour? Let's talk about getting your fleet on the board.