Security

We treat security and privacy seriously. Below is an overview of technical measures and practical recommendations.

Highlights

  • CSRF protection for forms.
  • Anti-bot mechanisms (Turnstile) where enabled.
  • Audit logging for sensitive actions (admin/tech accounts).

Operational guidance

  • Use clear payment titles so customers can verify what they are paying for.
  • When sharing links, prefer controlled channels (your own SMS/email) over public posts.
  • If you print QR codes, keep them readable (contrast, size) and replace outdated materials.

Privacy and access

We apply sensible defaults for access and keep a clear separation between public pages (which can be indexed) and application pages (which are set to noindex). Sensitive actions can be audited with contextual data to help diagnose incidents and protect users.

See also: legal documents and Documents.