Encrypted Connections
"Every request to Bloom runs over HTTPS with TLS, and HSTS keeps it that way. Data moving between your device and our servers is encrypted the whole way."
Encryption at Rest
"Sensitive credentials and biometric encodings are encrypted before they ever reach storage, using key-stretched algorithms. Keys are never kept in plaintext."
No Card Data Stored
"Payment is settled in person — cash or the waiter's card terminal. Bloom never sees, processes, or stores your card number."
2FA & Biometric Safety
"Staff accounts can switch on two-factor authentication, and any face encodings used for staff login are stored encrypted — never as raw images."
Least-Privilege Access
"Role-based access scopes every action to a staff member's role, and each shop's data is isolated from every other tenant on the platform."
Always-On Defenses
"Continuous health monitoring, CSRF protection, and adaptive rate limiting guard the platform against abuse around the clock."
Security is the
foundation.
"We build protection into every layer — from encrypted connections to least-privilege access — so you can focus on great coffee."
Version 1.0
Last Security Review: June 2026
Disclosure: [email protected]