Backups
Daily at 03:00 locally and 04:00 off-site, to S3-compatible storage. Thirty days back. The restore procedure is written down and tested.
Security
We describe only what is in place today. No badge-collecting.
Daily at 03:00 locally and 04:00 off-site, to S3-compatible storage. Thirty days back. The restore procedure is written down and tested.
SSL, DDoS protection and a CDN. A dedicated server, with the application running in containers.
Owner, manager, read-only, plus granular permissions. Operators see only their own facilities. Customers see only their own contracts.
Every change records the author, the time, the IP address, the browser and the value before and after.
Keys for invoicing, payments and gates are encrypted in the database. The API never returns them — only whether they are set.
Records are marked as deleted rather than erased, so a mistake can be undone. Permanent deletion happens on request, under a procedure.
An acceptance log for terms, consent on waiting lists, and deletion of a customer's data on request. A data processing agreement is available.
Errors tracked in Sentry, availability in UptimeRobot, alerts to the team. Around 1,750 automated backend tests run before every deployment.
We would rather say plainly where the system ends and your decision begins.
Demo
Send it to [email protected] and we will answer it point by point.
Prefer to write or call? [email protected] · 728 060 606
Leave an email and a phone number; we will call you back within one working day.