Security & compliance

Your data stays where it belongs.

ConsignThem handles sensitive consigner financial records, addresses and photos. We take that seriously. Here's how.

Encryption in transit and at rest

TLS 1.3 between your browser and the API. PostgreSQL, R2 and Redis encrypted at rest. Magic-link tokens SHA-256, passwords bcrypt cost 12, TOTP secrets symmetrically encrypted.

No plain-text passwords

Sellers sign in via magic link or TOTP — no password to forget, no credentials to leak. Admin sessions expire after 30 days idle.

Hosted in the EU

Frankfurt + Berlin DCs. Cloudflare R2 (EU). Consistent GDPR jurisdiction, no cross-Atlantic data transfers, no Schrems II problem.

Daily backups, point-in-time recovery

PostgreSQL WAL streaming + S3 cold snapshots every 24 h. Roll back to any point within the last 7 days.

Audit log for every change

Every payout, every cash-out sent, every price change → a record with timestamp + user + IP. No operation gets lost in a spreadsheet.

Multi-tenant isolation

Each store has its own tenant scope. No SQL query can see another store's consigners, not even by accident. Regular penetration tests by an external firm.

GDPR & compliance

  • DPA on request — send us an email and you'll get a signed Data Processing Agreement right back.
  • Right to be forgotten — consigners can request pseudonymization. Done within 30 days; the audit log stays (only the name is blanked out).
  • Data export — all of a consigner's data downloadable as JSON + XLSX at any time.
  • Sub-processors — a published list: Cloudflare (CDN, R2), Resend (email), Meilisearch (search index, on-prem). No Google Analytics, no Facebook pixel, no Hotjar.
  • Incident response — security@consignthem.com. We respond within 24 h; major incidents within 72 h per GDPR.
Responsible disclosure

Found a vulnerability?

Send the details to security@consignthem.com. Bug bounties are handled case-by-case — critical vulns up to €500. We never take down someone else's account, no matter who asks.

Back to sign-in