Security
How we protect your data at every level.
Security at a glance
- Encrypted at rest & in transit
- Complete data isolation
- 100% serverless on AWS
- Passwordless authentication
- Role-based access control
- 5-year audit trail
- PCI-compliant payments
- Automatic archival
Encrypted Everything
Your data is encrypted when it's stored and encrypted while it travels between your browser and our servers.
- All stored data uses AES-256 encryption, the same standard banks and government agencies rely on
- Every connection is secured with HTTPS and TLS 1.2+, identical to what online banking uses
- POS connection credentials get their own dedicated encryption key that rotates automatically
- Documents, uploaded files, and archived records are all encrypted where they're stored
Your Data Stays Yours
Every restaurant's data is completely separated. One company can never access another's information, and we enforce that on every single request.
- Every request is scoped to your company. There's simply no way to cross company boundaries.
- The system verifies you belong to the company before showing you any data
- Background processes like POS data sync and archival run one company at a time, fully isolated
- Internal admin tools go through the same permission checks as everything else
No Passwords to Steal
QuickSpice doesn't use passwords at all. You sign in with a one-time link sent to your email, or through Google. If there's no password, there's nothing to hack.
- Each magic link works exactly once and expires after 15 minutes
- Expired links are deleted entirely, not just marked as used
- Google sign-in is also available, backed by Google's own security
- No password reset flows, no security questions, no password database that could be breached
Hosted on Amazon Web Services
QuickSpice runs entirely in the cloud on AWS, the same infrastructure trusted by Netflix, Airbnb, and thousands of businesses. There are no physical servers to break into.
- Everything runs in the cloud. No hardware in an office, no servers under a desk.
- Your data is stored in managed cloud services that handle security and reliability for us
- The website loads fast through a global delivery network with built-in protections
- AWS guarantees extremely high uptime, so your team can access QuickSpice whenever they need it
See Only What You Need
Staff see their own schedule and badge times. Managers see their locations. Admins see the locations you choose. Nobody gets more access than their role requires.
- Four permission levels: Staff, Manager, Admin, and Org Admin, each with progressively more access
- Fine-grained permissions on top of roles: turn off specific capabilities per person, per location, like viewing pay and tip amounts
- Permissions are checked on every request before any data is returned
- Managers and admins can only view and manage employees at locations within their scope
- The system automatically prevents destructive actions like removing the last admin from a company
Every Change is Recorded
We keep a full audit trail of who changed what, when, and why across every part of the platform. Logs stay active for 6 months and are archived for 5 years.
- Every create, update, and delete is logged along with who made the change
- Each record captures what changed, who was affected, and a detailed breakdown of the modifications
- The last 6 months of audit history is available to org admins right in the app, keeping this info locked down
- Older logs are automatically archived and kept for 5 years, downloadable anytime by org admins
Secure Payments Through Stripe
Billing goes through Stripe, which is PCI-compliant. We never see or store credit card numbers.
- Card numbers and payment details go directly to Stripe and never touch our servers
- Stripe holds PCI DSS Level 1 certification, the highest level of payment security
- Your billing info lives entirely within Stripe's system, not ours
- Billing is usage-based and metered daily, so each location only pays for the days it and its employees were active
Automatic Data Management
Old data gets archived before it's cleaned up. Org admins can download archives anytime from the Data Archives page. Nothing disappears without a copy.
- An automated monthly job archives aging data before it gets removed from the active database
- Archives are kept for 5 years and org admins can download them at any time
- Form submissions, time entries, schedules, tip records, and audit logs all get archived
- Certificate records and documents are removed one year after the certificate expires
- Our full data retention schedule is published openly on the Data Retention page
Want to know more?
Learn about our data retention policies or browse our Help Center for more details.
Have security questions? Reach out to us at
support@quickspice.io