Security & Trust
Your data is safe with Riddlio
Security is not an afterthought. Every feature in Riddlio is built with data protection in mind — from secure transport and access control to backups and privacy workflows.
TLS Transport
Encrypted browser and API traffic
Privacy Tools
Export, consent, and deletion workflows
PCI-DSS Providers
Raw card data stays with payment gateways
2FA Support
TOTP-based two-factor auth
Encryption in Transit
All browser and API traffic is protected in transit with TLS. Raw card data is handled by payment providers and never stored by Riddlio.
Automated Backups
Daily automated backups with 30-day retention. In the unlikely event of data loss, we can restore your account to any point in the last 30 days.
Role-Based Access Control
Assign staff to specific roles with granular permissions. Control who can view bookings, manage pricing, issue refunds, or access customer data.
Two-Factor Authentication
Enable 2FA on all admin accounts using Google Authenticator or any TOTP app. An extra layer of security beyond passwords.
Privacy Controls
Data export, customer anonymization, consent tracking, and deletion workflows help venues respond to GDPR, CCPA, and Australian Privacy Act requests.
Data Ownership & Export
You own your venue data. Export booking, customer, payment-reference, and reporting data from the dashboard, and request account deletion or retention details through support.
Secure Payment Processing
Payments are processed by PCI-DSS compliant providers. Riddlio never stores raw credit card numbers; it stores gateway references and safe metadata such as card brand and last four digits when providers return them.
Have security questions?
We are happy to provide security documentation, a data processing agreement, and compliance details. Contact our team for a security review.