Encryption
TLS 1.2+ in transit and AES‑256 at rest. Secrets stored in a managed key service.
We follow modern security practices and keep raising the bar.
TLS 1.2+ in transit and AES‑256 at rest. Secrets stored in a managed key service.
Role‑based permissions; production access is limited and auditable.
Automated encrypted backups with periodic restore drills.
We only request the minimum Square scopes required to detect openings and book replacements.
You control your data. We retain only what’s needed for operation and billing.
Key events are logged (openings, notifications, replacements) to aid reconciliation.
Queue‑based processing with retries and backoff; webhook failures surfaced for quick fixes.
Documented procedures and customer notification according to our policy.
Found a security issue or have a question? Reach out and select the “Security” topic.
See how we handle data and answer common questions.