Security Policy
We take the security of your business data seriously.
Last updated: June 28, 2026
Tudepos is built with security at its core. This policy outlines the measures we take to protect your data, transactions, and account information.
Infrastructure security
- Cloud hosting on secure, monitored data centres
- Network firewalls and intrusion detection systems
- Regular security patches and system updates
- DDoS protection and traffic monitoring
Data encryption
All data transmitted between your devices and Tudepos is encrypted using TLS 1.2 or higher. Sensitive data stored on our servers is encrypted at rest using AES-256 encryption.
Access controls
- Role-based permissions for staff accounts
- Multi-factor authentication available for administrators
- Session timeouts and automatic logout options
- Audit logs for sensitive account and configuration changes
Backups and recovery
Automated daily backups are performed for all customer accounts. Backups are stored in geographically separate locations and tested regularly to ensure data can be restored in the event of an incident.
Payment security
Payment processing integrations comply with PCI DSS requirements. Tudepos does not store full credit card numbers on our servers.
Incident response
We maintain an incident response plan to detect, contain, and remediate security events. Affected customers will be notified promptly in accordance with applicable laws if a breach involving personal data occurs.
Employee access
Access to customer data by Tudepos staff is limited to authorized personnel on a need-to-know basis. All employees undergo security awareness training and are bound by confidentiality agreements.
Report a vulnerability
If you discover a security vulnerability, please report it responsibly to security@tudepos.com. We appreciate responsible disclosure and will respond promptly.