All data encrypted at rest (AES-256) and in transit (TLS 1.3)
Role-based permissions, 2FA, SSO, and session management
PCI DSS, SOC 2 Type II, GDPR, CCPA, HIPAA-ready
24/7 intrusion detection, anomaly alerts, and audit logging
Every piece of data — from menu items to payment details — is encrypted using the strongest standards available.
The highest level of payment card security certification. We handle card data according to the strictest standards.
Independent auditors verify our security controls annually. Our audit reports are available to Enterprise customers under NDA.
Full compliance with EU data protection regulations. Data portability, right to erasure, and consent management built in.
California Consumer Privacy Act compliance. California residents can request data access, deletion, and opt-out of sale.
Our infrastructure supports HIPAA requirements for restaurants handling health-related dietary data.
International standard for information security management. Our policies and procedures are ISO-aligned.
Our infrastructure runs on AWS with multi-region redundancy, automated failover, and 24/7 monitoring by security engineers.
Automated monitoring alerts security team instantly
On-call engineer assesses severity and scope
Contain and fix the issue with minimal disruption
Detailed root cause analysis shared with affected customers
Choose where your data is stored. We offer regional data residency options to comply with local regulations.
AWS US-East/West — For US and Canadian restaurants
AWS EU (Frankfurt) — GDPR-compliant for European restaurants
AWS Singapore — For Asia-Pacific restaurants
Automated backups with point-in-time recovery. If anything goes wrong, we can restore your data to any moment in the last 30 days.
We believe in transparency. If you discover a security vulnerability, we want to know. We offer bounties for valid reports and commit to fixing issues promptly.
security@qubedine.com