Kaupify trust centre

Security you can understand. Privacy you can control.

Your financial data should never feel like a black box. See how Kaupify separates companies, protects identities, verifies sensitive requests and gives businesses practical control over their information.

Plain-language product overview · Updated August 2026
Fail-closed accessUnverified company context is rejected
Signed callbacksIntegration updates are authenticated
AuditabilityImportant actions leave a trail
Essential cookies onlyNo advertising cookie is needed for core use
Security by design

Protection at every hand-off.

Security is strongest when the boundaries are visible. Kaupify checks identity, company context and request integrity before opening a workspace or accepting a sensitive update.

01

Workspace isolation starts before data access

Staff sessions, customer portals, secure links, files, jobs and webhooks must resolve to one registered company. Missing or conflicting company context is rejected.

IdentitySigned or verifiedCompanyOne consistent boundaryDataScoped workspace only
02

Account protection

Salted PBKDF2-SHA256 password hashes, permissions, optional two-factor authentication, session expiry and login rate limits protect access.

03

Request protection

State-changing browser actions use CSRF protection. Production cookies can be Secure, HttpOnly and SameSite, with security headers at the application edge.

04

Payment integrity

Hosted payment providers handle card details. Payment updates are accepted through signed callbacks tied to the correct company and transaction.

05

Roles and auditability

Administrators decide which tools staff can reach. Important administrative and financial actions create an audit trail.

06

Readiness before traffic

The application reports unavailable when required secrets, persistent storage or the tenant database boundary is not ready.

Application secrets and subscriber data stay outside release archives.Health checks expose whether storage and database access are ready.Production recovery and backup routines can be operated separately from deployments.
07

Controlled support access

The Kaupify owner support console uses separate authorization and does not accept subscriber administrator passwords.

Support access is distinct from a subscriber login.Never send passwords, recovery codes or payment-card details to support.Administrative and diagnostic activity should remain auditable.
Active application controls

A request never chooses a company by accident.

Every request starts without subscriber data access. Access is restored only from a consistent signed session, a secure public link or a verified integration signature.

Fail closedLeast privilegeExplicit company contextAuditable changes
Staff identityA mismatched or outdated session is cleared.Company bound
Customer portalThe same email may safely exist in separate workspaces.Scoped
Background workImports, publishing and webhooks carry company context.Preserved
Integration eventsProvider signatures are checked before updates.Verified
Privacy in plain language

Your data has a job. Nothing more.

Kaupify uses business data to deliver the workflows a customer chooses, protect accounts and maintain the service. Core accounting and POS functions do not require advertising cookies.

Account identityNames, work email, roles and authentication information
Why it is used

To operate accounts, apply permissions and protect sign-in.

Your control

Company administrators manage staff accounts, roles and access.

Company verificationRegistration number, official name, start date, status and optional evidence
Why it is used

To confirm eligibility for the time-limited New Business price and prevent duplicate claims.

Data minimisation

Kaupify retains only the result and necessary evidence. Registry credentials and full registry responses are not stored in subscriber accounts.

Business recordsInvoices, receipts, payments, stock, orders and accounting entries
Why it is used

To provide the accounting and operational modules the subscriber selects.

Your control

The subscriber controls what is entered, imported, exported and retained, subject to record-keeping duties.

Connected servicesBanks, shops, email, payments and e-invoicing
Why it is used

To exchange the information required by an integration configured by the customer.

Your control

Authorized users choose which integrations to configure or disconnect.

Security and service logsLimited technical events for reliability and abuse detection
Why it is used

To diagnose failures, investigate misuse and keep the service reliable.

Your control

Retention should remain limited to operational and legal needs.

01ChooseEnable only the modules and connections the business needs.
02ProtectBind people and requests to a verified company context.
03UseProcess information for the selected business workflow.
04ControlManage access, integrations, records and exports.
05Retain lawfullyBalance privacy requests with accounting duties.
Be informedAccessCorrectionRestrictionPortabilityObjectionErasure where applicable
A calmer cookie story

Core Kaupify works without advertising cookies.

An essential session cookie keeps users signed in and protects authenticated requests. Optional analytics should be documented and controlled before activation.

Trust should never hide behind jargon.

Ask us about access controls, data handling, backups, incident reporting or a planned integration.

Contact Kaupify