Trust

Security

How OnyxDine protects your restaurant's data, your guests' information, and your ability to keep serving when things go wrong.

Last reviewed 11 September 2026

Encryption

All traffic between your devices, guests' phones and our servers is encrypted with TLS 1.2+. Data at rest — databases, backups, uploaded files — is encrypted on disk.

Card data never touches us

Subscription payments are handled by Paddle; guest payments by your chosen gateway (Stripe, PayPal and others). Both are PCI DSS Level 1 providers. OnyxDine stores only the last four digits and a payment token.

Role-based access

Every staff login has a role. Servers see tables and orders; kitchen sees tickets; managers see reports; only owners see billing, settings and exports. Access is logged.

Backups

Full backups daily, retained for 30 days, stored encrypted in a separate location from production. Restores are tested regularly.

Offline resilience

The Counter POS keeps taking orders and payments if your internet drops, queues them locally, and syncs when the connection returns. Kitchen tickets can fall back to a printer.

Hosting

Production runs on hardened Linux servers in Canada with firewalling, automatic security patching, isolated environments, and monitoring with alerting to the on-call engineer.