Security & Data

Your store. Your data.

A plain-language guide to how Cork handles store information and the boundaries around your account.

Updated: September 12, 2026

Access stays with your store

Cork uses authenticated accounts, store-scoped access checks, and staff roles to control access to store records and actions. An employee's access depends on the permissions assigned to that account.

Account owners should keep team access current and contact Cork when an account or device needs attention.

Protected connections and storage

The Cork website and application use HTTPS to protect data in transit. Backend services and data storage are operated through infrastructure providers including Render and Supabase, with access restricted to authorized operational purposes.

Backup retention and recovery arrangements depend on the service configuration and your store agreement. Contact us to review the arrangements for your store before onboarding.

Payments have a separate boundary

Cork integrates with payment providers, including Finix. Live card processing depends on your store's approved provider setup and activation; a product demo does not establish live processing availability.

The Cork External POS Bridge does not collect full card numbers. Where a card reference is needed, it is limited to the last four digits. Card entry and processing belong in the approved payment flow, never in a support or booking form.

You control what goes in and what goes out

Catalog and history imports start from files you are authorized to share. Mappings and exceptions are reviewed before using imported data. Available fields and workflows depend on the source system.

Scout can help prepare purchase-order drafts. Creating a draft is separate from sending an order to a vendor; review the products, quantities, and costs before approving it.

Your data is not advertising inventory

We do not sell user data or use it for unrelated advertising, creditworthiness, or lending decisions. Store information is used for the agreed Cork workflows, such as reporting, reconciliation, alerts, and ordering.

Read the privacy policy for collection, service-provider, and retention details. Contact us about access, export, or deletion requests.

Report a concern

Email hello@poscork.com with the affected page or workflow and a brief description. Avoid including passwords, full card numbers, or customer records. We'll arrange a suitable way to share any sensitive evidence.

Store support relates to Cork software and operations. It is not a physical security or emergency response service.