← Back to FAQ
FAQ

Is my payment secure?

Yes — completely. CanteenBitez is designed with security at every layer. Here's exactly how your data and transactions are protected.

HTTPS Encryption

All pages are served over HTTPS. Every byte of data between your device and our server is encrypted in transit — impossible to intercept.

No Card Storage

We never store your card number or payment details on our servers. Payment processing is handled externally with no sensitive data retained.

Hashed Passwords

Your password is hashed using bcrypt before storage. Even our own team cannot see your password — ever.

CSRF Protection

Every form and API call is protected with a CSRF token, preventing malicious third-party sites from making requests on your behalf.

Your account is safe

Sessions expire automatically after inactivity. Only you can access your order history, QR tokens, and account details when logged in.

One-time QR tokens

Each order generates a unique QR code linked to that order only. Once staff scans it and marks your order as collected, the token is permanently invalidated — it can never be reused or duplicated. If you notice any suspicious activity on your account, contact your canteen administrator immediately.

CanteenBitez AI