Skip to content

Security & Trust

Your data is safe with Riddlio

Security is not an afterthought. Every feature in Riddlio is built with data protection in mind — from secure transport and access control to backups and privacy workflows.

TLS Transport

Encrypted browser and API traffic

Privacy Tools

Export, consent, and deletion workflows

PCI-DSS Providers

Raw card data stays with payment gateways

2FA Support

TOTP-based two-factor auth

Encryption in Transit

All browser and API traffic is protected in transit with TLS. Raw card data is handled by payment providers and never stored by Riddlio.

Automated Backups

Daily automated backups with 30-day retention. In the unlikely event of data loss, we can restore your account to any point in the last 30 days.

Role-Based Access Control

Assign staff to specific roles with granular permissions. Control who can view bookings, manage pricing, issue refunds, or access customer data.

Two-Factor Authentication

Enable 2FA on all admin accounts using Google Authenticator or any TOTP app. An extra layer of security beyond passwords.

Privacy Controls

Data export, customer anonymization, consent tracking, and deletion workflows help venues respond to GDPR, CCPA, and Australian Privacy Act requests.

Data Ownership & Export

You own your venue data. Export booking, customer, payment-reference, and reporting data from the dashboard, and request account deletion or retention details through support.

Secure Payment Processing

Payments are processed by PCI-DSS compliant providers. Riddlio never stores raw credit card numbers; it stores gateway references and safe metadata such as card brand and last four digits when providers return them.

Have security questions?

We are happy to provide security documentation, a data processing agreement, and compliance details. Contact our team for a security review.