No internet connection — some features may be unavailable
SecurityHow we protect your data

PLATFORM
SECURITY.

All systems hardened

Encrypted end to end

TLS + HSTS

Encrypted Connections

"Every request to Bloom runs over HTTPS with TLS, and HSTS keeps it that way. Data moving between your device and our servers is encrypted the whole way."

PBKDF2

Encryption at Rest

"Sensitive credentials and biometric encodings are encrypted before they ever reach storage, using key-stretched algorithms. Keys are never kept in plaintext."

BY DESIGN

No Card Data Stored

"Payment is settled in person — cash or the waiter's card terminal. Bloom never sees, processes, or stores your card number."

ENCRYPTED

2FA & Biometric Safety

"Staff accounts can switch on two-factor authentication, and any face encodings used for staff login are stored encrypted — never as raw images."

ENFORCED

Least-Privilege Access

"Role-based access scopes every action to a staff member's role, and each shop's data is isolated from every other tenant on the platform."

24/7

Always-On Defenses

"Continuous health monitoring, CSRF protection, and adaptive rate limiting guard the platform against abuse around the clock."

Hardened by default

Security is the
foundation.

"We build protection into every layer — from encrypted connections to least-privilege access — so you can focus on great coffee."

Version 1.0

Last Security Review: June 2026

Disclosure: [email protected]