Security

Your data is safe with us.

Security isn't a feature we added later. It's foundational to how FranjoPos is built, deployed, and operated.

99.98%

Uptime SLA

AES-256

Encryption

EU

Data residency

24/7

Monitoring

Encryption everywhere

All data encrypted at rest (AES-256) and in transit (TLS 1.3). Database backups are independently encrypted.

Access control

Role-based access per restaurant. API tokens are scoped and rotatable. 2FA available for all accounts.

Infrastructure security

Hosted on Hetzner Cloud (ISO 27001 certified) in Frankfurt, EU. Network-level firewall, DDoS protection via Cloudflare.

Monitoring & alerting

24/7 anomaly detection, real-time alerting for unusual access patterns, and automated incident response.

Compliance

GDPR compliant. SOC 2 Type II audit in progress. PCI DSS handled by Stripe (Level 1 certified).

Vulnerability disclosure

Responsible disclosure programme. Report vulnerabilities to [email protected]. We aim to respond within 24 hours.

Found a vulnerability?

We run a responsible disclosure programme. Report security issues to [email protected] and we'll respond within 24 hours.

We do not take legal action against researchers who follow responsible disclosure guidelines.