Security, Data Safety & Trust
We take the protection of your restaurant data, customer records, and daily sales ledgers seriously with multi-layer encryption and GCP cloud isolation.
Data Encryption
All network traffic is encrypted using TLS 1.3 in-transit. Storage volumes and database backups are encrypted at rest using AES-256 keys.
Google Cloud Infrastructure
Hosted in Google Cloud Platform Mumbai (asia-south1) data centers with 24x7 physical security, biometric locks, and SOC 2 Type II compliance.
Access Control & Audit Logs
Role-based permissions (RBAC) ensure cashiers and kitchen staff only see what they need. Sensitive admin actions generate immutable audit logs.
99.9% Uptime & Failover
Auto-scaling server clusters and zero-latency offline POS billing mode guarantee your counter billing never stops during internet outages.
100% Data Ownership
You own 100% of your restaurant sales ledgers, menu items, and customer phone numbers. Cravme never sells or trades your merchant data.
Payment Security
Card details and UPI credentials are tokenized directly via PCI-DSS Level 1 certified partners (Juspay and Razorpay). Cravme never stores raw card data.
Report a Security Vulnerability
If you discover a security vulnerability or bug within any Cravme application, web portal, or API endpoint, please report it responsibly. We investigate all reports promptly and respond within 24 hours.
