Trust Centre
How is your data protected?
Your customer records are your business's most valuable asset. Here we explain plainly how Ordein separates that data, who can see it and where it is stored.
Every business's data is separate
- Row-level security (RLS) is enabled on every table in the database
- A user from one business can't see another business's data
- Uploaded documents are kept in private storage for each business, with limits on file type and size
Who sees what?
Every staff member works under a role. For example, expenses and the cash register are only open to finance roles, and commission only to owners, managers and accountants. Permissions are enforced in the database.
Privacy
- An online booking request can't be sent without consent to data processing
- Consent to marketing messages and photo use is recorded per customer
- Visitors are asked for their cookie preference on this site
- Our Privacy Policy and Cookie Policy are linked at the bottom of every page
Infrastructure
The database runs on Supabase in Germany (EU); the application is hosted on Vercel. Our Privacy Policy explains which providers process data and where.
Payment security
Subscription payments are taken on the secure payment page of a PCI-DSS compliant payment provider; your card details never reach Ordein's servers.
Reporting a vulnerability
If you find a security issue, please write to destek@ordein.com.
