About TajerGo

Security and operating controls

Restaurant access and operating controls

TajerGo limits access by role and branch, encrypts data in transit and at rest, and handles data requests under the UAE PDPL. Each control below links to the published policy that commits to it.

Governing law
UAE Personal Data Protection Law
Data requests
[email protected]
Terms
Versioned, current version 1.2
Certification
None claimed

What protects your account and your data.

Every point is a commitment in our published Privacy Policy, so you can hold us to it.

  • Access by role and branch

    Staff see and change only what their role allows at the branches they are assigned to.

    • Roles scope what cashiers, managers and owners can view and change
    • Role-based access control and row-level security at the database layer
    • Account passwords are hashed

    Source: Privacy Policy, section 12

  • Data protection

    Data is encrypted on the way in and while it is stored, and internal access is limited.

    • Encryption in transit using TLS
    • Encryption at rest, plus column-level encryption for customer email, phone and address
    • Access logging, audit trails and need-to-know internal access

    Source: Privacy Policy, section 12

  • Where data is hosted

    The sub-processors are named, with their role and region.

    • Application hosting and cache: Render, Frankfurt, Germany
    • Primary database: Supabase, Mumbai, India
    • Uploaded documents and images: Amazon S3, Mumbai, India
    • Payments: Stripe. Email: Resend. AI processing: Google Cloud

    Source: Privacy Policy, sections 6 and 7

  • Your data rights

    Ask for access, correction, deletion or a copy of your data, and withdraw consent at any time.

    • Requests go to [email protected], with identity checked before we act
    • Answered within the period the UAE PDPL requires
    • Human review of decisions made only by automated processing
    • Complaints can go to the UAE Data Office

    Source: Privacy Policy, section 9

  • Consent and versioned terms

    What you agreed to, and when, is recorded.

    • Consent is recorded with a timestamp and the policy version accepted
    • The Terms of Service carry a version number and effective date
    • Cookie choices can be changed any time from Privacy choices in the footer

    Source: Privacy Policy, section 8

  • Incidents and retention

    What happens if something goes wrong, and how long records are kept.

    • Breaches are reported to the UAE Data Office, and to affected merchants without undue delay
    • Transaction, document and audit records are kept for 5 years
    • Data is deleted or anonymised when its period ends

    Source: Privacy Policy, sections 13 and 14

Merchant data and your obligations.

  • 01

    Your business data, your instructions

    You decide how customer and business data is used in your account. TajerGo processes it to provide the service, under the Data Processing terms. A signed Data Processing Addendum is available during contracting.

  • 02

    Customer data at the till

    Loyalty sign-ups and delivery details make you a data controller under the PDPL. Read UAE PDPL for restaurants for what that means day to day. India customers are covered by the India edition's privacy notice.

What to check in a demo.

Bring the roles and branches you need and test them on the real screens.

  • Sign in as a cashier and confirm what that role cannot see
  • Try a sensitive action, such as a void or refund, and look at what is recorded
  • Ask for the current Data Processing Addendum
  • Review receipt output and tax settings with your adviser

Questions

Common questions, answered.

Yes. Bring the roles and branches you need, and the demo shows what each role can see and change.

See TajerGo on your own menu or product list.

Start on the free plan, or book a demo and we will walk through your setup.