A dealership owner seeks input on developing AI use policies after noticing employees using ChatGPT and similar tools without oversight, risking exposure of proprietary dealership data to AI training models. The discussion emphasizes the need for clear internal guidelines about what data employees can safely share with AI tools and recommends staff training on both responsible AI use and prompt engineering techniques. The key insight is that dealerships should establish formal policies now rather than wait, given widespread unsanctioned AI adoption already happening among staff.
A user with nearly two years of DealerTrack experience expresses significant frustration with the platform's reporting capabilities, describing them as essentially nonexistent and criticizing the system's core design as inherently flawed for data quality and reporting functionality. The poster questions the value of DealerTrack's add-on modules (DealerOps, Stone Eagle, Advanced Report Writing) and invokes the "garbage in, garbage out" principle, suggesting the system actively enables poor data entry rather than preventing it. The key insight is that DealerTrack may be fundamentally inadequate for dealers requiring robust reporting and data integrity features.
A DealerTrack user seeks guidance on integrating with the platform's DB2 database via ODBC, specifically asking how to identify which tables contain recently modified deal data when documentation is unavailable. One experienced respondent expresses frustration with DealerTrack's lack of documentation and overall management, suggesting this is a known pain point in the community.
A developer seeking free work experience in automotive warranty administration reaches out to dealership owners and GMs, but struggles to get traction beyond initial rejections. Respondents note that many dealerships either handle warranty in-house or hire specialized external companies, with one commenter highlighting that manufacturers like GM are particularly stringent about warranty claims, creating demand for experienced specialists who know how to navigate denials. The thread suggests that gabrielm's entry point may be limited without either local connections or expertise that addresses a specific pain point dealers face.
Alex Snyder highlights Dominion DMS's new VUE Net backup system as an important security solution for dealerships, particularly in light of recent cybersecurity threats like the CDK hack. A Dominion representative confirms their availability to answer detailed questions about the product, positioning it as a viable option for dealers concerned about DMS downtime and data protection.
Automotive dealers discuss the FTC's CARS Rule (Combating Auto Retail Scams Trade Regulation Rule), with a forum member preparing to meet with the FTC's Director of Financial Practices to advocate for industry concerns. The thread covers Florida's independent enforcement efforts against undisclosed fees and reports that a federal court vacated the CARS Rule on procedural grounds (inadequate notice), though dealers acknowledge the underlying transparency goals have merit and a compromise may eventually emerge. The key insight is that while dealers view the rule as overreaching, the industry recognizes legitimate consumer protection concerns around pricing transparency, and the outcome may depend on political factors including potential White House oversight of the FTC.
A new industry employee asks for guidance on financing processes for dealerships without captive finance departments, specifically inquiring about financing software, lender relationships (brokers vs. direct bank/credit union connections), and satisfaction with current approval timelines and rates. The thread appears to explore whether working with multiple lenders improves deal flow and pricing outcomes compared to limited financing options.
Tekion has filed an antitrust lawsuit against CDK Global, alleging anticompetitive practices that obstruct dealer access to their own data and unfairly disadvantage DMS competitors. The discussion centers on whether Tekion's legal action will succeed or if CDK's market dominance will allow them to escape consequences, with a notable case example involving Asbury Park that required a Georgia court's preliminary injunction to force CDK to release dealership data for a Tekion pilot program. The thread reflects industry frustration with CDK's alleged data-withholding tactics and skepticism about the effectiveness of legal remedies against the dominant player.
A dealer seeks recommendations for affordable VIN decode APIs, specifically for basic year-make-model (YMM) data without minimum commitments. The thread quickly converges on the NHTSA free VIN decoder API as the consensus recommendation, with additional mentions of low-cost alternatives on RapidAPI and a free third-party tool also powered by NHTSA data.
A CDK outage survivor-turned-entrepreneur solicits feedback from dealers on cybersecurity vulnerabilities and potential product solutions through a survey, but receives skepticism from community members about clicking external links in a security-focused discussion. The thread highlights a tension between the poster's market research efforts and the forum's appropriate wariness about security risks, with one member requesting the survey questions be posted directly instead of via link. No clear consensus or solution emerges, though the exchange underscores dealers' genuine concerns about data protection and business continuity following the recent outage.
A dealer using PBS DMS expresses frustration that while the system excels for service operations, it has significant sales functionality limitations including lack of autosave on quotes, inventory locking issues, and inflexible pricing adjustments. The thread reveals a broader industry problem: dealers are often constrained by manufacturer-approved software restrictions, leaving them stuck with suboptimal solutions and unable to supplement with third-party CRM tools without workflow complications and compliance issues. The consensus emerging is that most DMS platforms force dealers to choose between service-focused and sales-focused functionality rather than excelling at both.
A fraud prevention professional presents data showing the auto finance industry faces $1.8 billion in synthetic identity fraud exposure and asks dealers if they'd be interested in advanced fraud prevention solutions. Responses are limited, with one non-dealer pointing to an existing identity verification service (Gather Technology) and another suggesting legal remedies as the primary defense. The thread reveals that while synthetic identity fraud is a significant industry problem, there appears to be limited dealer engagement on potential technological solutions.
Dealership professionals debate strategies to mitigate catastrophic downtime from vendor cyberattacks like the recent CDK breach, with the core tension being whether diversifying across multiple vendors is worth the integration costs and operational complexity. While participants agree that concentrating all critical systems with one vendor creates unacceptable risk, they acknowledge that DMS vendors often impose high "taxes" (API fees) to allow competing systems access to data, and achieving seamless integration across multiple platforms remains technically challenging. The emerging consensus is that dealers must push back on vendors' lock-in tactics and demand better integration, though this likely requires sacrificing some operational efficiencies in exchange for business continuity protection.
Following a CDK cyber incident on June 19th, dealers using CDK's inventory aggregation service experienced broken syncing to Cars.com—both pricing updates and vehicle additions/deletions stopped working. The thread reveals that dealers using alternative syndication routes (like Homenet/vAuto, which is owned by Cox) were largely unaffected, suggesting CDK's outage specifically disrupted their data pipeline to Cars.com, forcing some dealers to manually manage inventory with backlogs of 80+ vehicles.
A vendor is promoting a webinar about NADA Vault, a data security solution designed to help dealerships comply with updated FTC regulations. The key offering is training on how the platform enables dealers to better control and secure their data. No discussion or insights from dealership professionals are present—this is a straightforward promotional announcement.
A dealership manager using ERA Access on the blue screen interface experiences frequent logouts every few minutes, even mid-transaction, while other users have normal session lengths. Respondents suggest troubleshooting steps including testing the user's account on a different machine, clearing browser cache, restarting the workstation, and contacting R&R TAC support, with the consensus that the issue is likely machine-specific rather than a software configuration problem, despite a 60-minute automatic logoff setting existing in program 6210.
Following CDK's ransomware attack, automotive professionals debate whether the company should pay the ransom, with discussion centering on backup strategies, the real costs of refusal (citing MGM's $110M loss vs. Caesars' $15M payment), and systemic security failures at major vendors. Key insights highlight that CDK's outdated infrastructure (14-year-old code using deprecated ASP technology), lack of independent security testing, and slow incident response made them vulnerable—problems that proactive penetration testing and modern security architecture could have prevented. The thread suggests paying a negotiated ransom may be economically preferable to the operational losses dealers face during extended outages, while also exposing how critical vendor security failures cascade across thousands of dependent businesses.
Dealer IT professionals discuss practical security challenges specific to automotive dealerships, including FTC/PCI compliance, employee negligence with customer data, and breach response procedures. Key recommendations include implementing ID scanning directly into CRMs, eliminating paper copies of sensitive documents, using hard-wired networks with separate guest WiFi, enabling multi-factor authentication, and establishing accountability through violation tracking programs. The consensus is that while dealerships have historically been fortunate to avoid major breaches, a combination of technical controls (EDR, RMM, encryption) and procedural discipline (securing physical documents, preventing email storage of sensitive data) is essential since no system is 100% secure.
A dealership discovered that 161 of its 707 phone numbers were flagged on spam/scam lists, significantly impacting outbound call connect rates, and forum members discussed the broader industry problem of phone number flagging and recommended services like Dealer Identity and Numeracle to manage compliance. The key insight is that many dealers are unaware their numbers are being blocked by customers' spam filters, and that manual remediation is complex and time-consuming, making third-party scrubbing services increasingly essential for maintaining call effectiveness.
A Priced Rite Auto Sales manager asks whether to upgrade from Microsoft Defender given new FTC compliance rules, prompting IT professionals from various dealerships to weigh in on antivirus options. The consensus emphasizes that while Microsoft Defender is adequate for baseline protection, the real security challenge isn't software choice but rather employee behavior and broader security infrastructure—including firewalls at the network level, data breach prevention, and account security—especially given dealerships' vulnerability to PII violations. Several professionals mention using enterprise solutions like Bitdefender, SentinelOne, and NinjaRMM, but stress that no antivirus software compensates for poor security practices or careless employees.
A dealer with exceptionally clean, manually-entered sales data dating back to 2019 seeks collaborators interested in using AI and data analysis to uncover actionable insights about inventory, leads, sales performance, and profitability correlations. Several technical professionals express genuine interest in helping, including a retired government programmer and a developer with a math background, though a commenter also suggests an existing tool (Carketa) that may already accomplish similar analysis. The thread demonstrates enthusiasm for data-driven decision making but lacks a clear resolution on whether the project will move forward or what specific insights will ultimately be discovered.
The thread explores synthetic identity fraud—a sophisticated scam where criminals craft fake identities over months or years that appear legitimate to dealerships and lenders—which costs the auto industry an estimated $8 billion annually and often leaves dealerships financially responsible per their lender agreements. Participants discuss detection methods (real-time document verification, selfie verification, and tools like PointPredictive) while debating whether existing solutions adequately protect dealers or if new fraud prevention tools are needed to address the growing vulnerability, particularly in online sales channels.