Compliance Document

Privacy Policy

Last Updated: June 20, 2026

At JASS POS, security and privacy are core pillars of our system design. This Privacy Policy details how we handle, process, and protect transaction records, restaurant inventory, and guest information cached within our high-performance POS platform.

1. Data Storage & Offline Caching

JASS POS uses a specialized offline-to-cloud synchronization engine. When your restaurant network loses connection, transaction records, guest details, and kitchen tickets are temporarily cached locally on your device in an encrypted SQLite database using AES-256 standard encryption. Upon re-establishing server connection, cached records are synchronized to our cloud servers via secure TLS 1.3 tunnels and subsequently purged from the local hardware device.

2. Financial Transactions & PCI Compliance

We do not store raw credit card numbers or sensitive CVV/CVC authentication codes on our servers. All card payment details are encrypted at the terminal reader hardware layer and tokenized instantly by our payment gateway partners (such as Stripe and Adyen). JASS POS only handles encrypted tokens to authorize transactions, maintaining strict PCI-DSS Level 1 compliance structures.

3. Data Sharing & Third-Party Integrations

Data collected from your registers is only shared with third-party software systems (like QuickBooks, Xero, or Delivery Aggregators) that you explicitly authorize via your API integrations control panel. We never sell, rent, or lease restaurant telemetry metrics or customer contact details to third-party marketing companies.

4. Security Infrastructure

Your operational data is stored in highly secure cloud environments featuring automated daily backups, role-based access permissions, and continuous threat monitoring systems. Access to data is restricted strictly to authorized staff members using multi-factor authentication (MFA).

Security Verification

Solve the equation below to confirm
your submission is from a real person.

CAPTCHA