Security
Your data stays in your system
This page lists only what we can show in the code. Where we do not have an answer yet, it says so.
- A separate database for each customer
- The database cannot be reached from the internet
- Every night – an encrypted copy in another location
- AI changes nothing without your approval
HTTPS
Your separate system
Database
Every night – an encrypted copy in another location
Isolation
Every customer in a separate database
Many systems keep all their customers' data in one database and separate it only in the application code. One bug in that code is enough for a stranger to see your orders. We run a separate system for every customer, so there is simply nowhere to make that mistake.
HTTPS
First Ltd
System DatabaseYour company
System DatabaseThird Ltd
System DatabaseAn encrypted copy in another location
-
Everything separate
Its own database, its own containers, its own network and its own storage for product photos. There are no shared tables.
-
The database is not on the internet
None of your system's containers has an open port. The only way in is HTTPS, through a shared entry point.
-
A neighbor's trouble is not yours
Another customer's error or heavy load does not slow your system down.
-
What is destroyed when you delete the account
The system is stopped, its address and certificate removed, its containers deleted with all their data storage, and its secrets destroyed.
Backups
Every night your data leaves the server
A copy on the same disk is not a backup. Every night your database and product photos are encrypted while still on the server, and only then sent to Microsoft Azure storage.
Every night
- Mon
- Tue
- Wed
- Thu
- Fri
- Sat
- Sun
Separate storage – only your backups
Encrypted before it leaves the server
- Daily 14
- Weekly 8
- Monthly 12
-
Encrypted before it is sent
The storage holds encrypted data. Without the passphrase neither the storage owner nor we could read it.
-
Separate storage for each customer
Your backups are kept apart from other customers' backups.
-
14 days, 8 weeks and 12 months
That many backups are kept by default – you can go back to yesterday or to how things stood half a year ago.
-
Restores with a safety net
Before restoring from an old backup, a copy of the current state is made first, so a failed restore destroys nothing.
-
We know at once if a backup fails
If a nightly backup is not made, we see it in our administration panel.
Encryption
Connections and secrets
Data travels only over encrypted connections, and the keys to your system are stored encrypted.
The certificate renews itself
Password
••••••••••
Only a hash is stored
pbkdf2:sha256:100000$…
Database password
Encrypted with a separate key
-
HTTPS everywhere
Both our subdomain and your own domain run over HTTPS. We issue and renew the certificate automatically.
-
System secrets – encrypted
We keep your system's database password and other secrets encrypted with a separate key.
-
Not even we know your password
We keep only a hash, from which the password cannot be recovered. The e-mail carries only a temporary password, and the system asks you to create your own at your first sign-in.
-
Marketplace logins
Marketplace and courier login details sit in your own database, which only your system can reach. They have no extra layer of encryption yet.
Access
Who can log in and what they see
Logging in is protected against guessing, and in the customer portal every person has their own permissions.
OOwner
- Read
- Change
- Payments
- Account deletion
AAdministrator
- Read
- Change
- Payments
- Account deletion
VViewer
- Read
- Change
- Payments
- Account deletion
-
Attempts are limited
After a few failed logins the account is locked for a while, so a password cannot be guessed.
-
E-mail is verified
You confirm your address by clicking the link in an e-mail.
-
Secure sessions
The session cookie cannot be read by JavaScript, is sent only over an encrypted connection and is protected against forms submitted from other sites.
-
Portal permissions
The owner can do everything, including payments and deleting the account. An administrator can do everything except that. A viewer only reads.
-
Activity history
Every action that changes data is recorded – by a person or by an AI agent. Passwords and keys never enter the history.
-
There is no two-factor authentication or company single sign-on (SSO) yet. When there is, we will say so here.
AI
AI sees only what you allow
Copilot and connected AI assistants work with your data, so the same rules apply to them as to people – only stricter.
New AI access
vsa_•••••••• vsa_7Hk2pQ9mX4…
-
Permissions per access
Each access is either read-only, or read-and-prepare.
-
The key is shown once
After that only a hash is kept. You can revoke access at any time.
-
Nothing is published
Everything the AI prepares waits for your approval. A product you already sell does not change without it.
-
Texts are processed by Google Gemini
For Copilot answers and translations, the system calls Gemini with your own API key. Without a key you have no AI features, and everything else works.
GDPR
Whose data it is and who is responsible
Your buyers' data is yours. We process it only so that the service you use works.
Order #10482
- Buyer
- ••••• John Smith
- Address
- ••••• 1 Ozo St, Vilnius
- Phone
- ••••• +370 600 00000
- ••••• john@example.com
- Products
- Thermos 1 l × 1
- Total
- €42.90
Anonymized
-
You are the data controller
You decide which buyer data you collect and how long you keep it. We are the data processor and work on your instructions.
-
A buyer asks for their data
In the settings section „Privatumas (BDAR)“ (Privacy (GDPR)) you find the buyer by name, e-mail or phone and download all their data as one file.
-
A buyer asks to be erased
In the same section you anonymize the buyer's selected orders and customer card yourself. Products and totals stay, and invoices are kept for as long as accounting law requires.
-
Retention periods
You can switch on automatic anonymization of old order and buyer data after the number of months you set. It is off to begin with.
-
A copy of all your data
On request, we prepare a copy of your whole system's data.
-
Backups after the account is deleted
When you delete the account your system is destroyed at once. The encrypted backups stay in storage until we remove them by hand. If you want them removed straight away, just write to us.
Payments
We hold no card details
Payments are handled by Stripe. You enter your card number in Stripe's window; our servers never see or store it.
Growth plan
€79 / month
Pay
Paid
Stripe
Card
4242 •••• •••• 4242
The card number never reaches our servers
Found a security flaw?
Write to us – we read security reports first. Technical contacts: security.txt.
Questions
What people ask before moving their whole shop
Can other customers see my data?
No. Your products, orders and buyers sit in a separate database that only your system can reach. There is simply no shared table in which customers would have to be told apart by a column.
What happens to my data if I cancel my subscription?
Your system is stopped, and on request we prepare a copy of your data. When the account is deleted, the containers, database and keys are destroyed. The encrypted backups stay in storage until we remove them by hand – write to us and we will do it straight away.
Can your staff see my orders?
Technically, yes: the people who maintain the system can log in to the server, because otherwise we could neither update it nor restore it from a backup. In day-to-day work we do not look at your data. We have not yet published a written policy on who may do so and when – once we do, it will appear on this page.
Where are the backups kept?
In Microsoft Azure storage, separate from the server your system runs on. They are encrypted while still on the server, so the storage holds only encrypted data.
Does the AI see my buyers' personal data?
Copilot can look at the customer list and orders, because it needs them to answer. The text you see in the conversation goes to Google Gemini with your own API key. A connected AI agent can only read buyer data – it cannot change it.
Can I get a copy of all my data?
Yes. Write to us and we will prepare a copy of the database and product photos.
Do you have ISO 27001 or SOC 2?
No, and we do not claim to. This page lists only what we can show in the code.
Move your shop into a system of your own
Sign up – the system is ready within a few minutes, and the data stays yours.
Have a question? Write to us or info@prekio.com