Security & Compliance

Your Data Is Safe with AionBooking

Enterprise-grade security built from the ground up — encryption, access control, compliance, and transparent disclosure.

Request Security Report View Policies

Security by Design

Security isn't an afterthought — it's built into every layer of the platform.

TLS 1.3 Encryption

All data in transit is encrypted using TLS 1.3. Older protocol versions are disabled by default.

AES-256 at Rest

Customer data, payment info, and booking records are encrypted at rest using AES-256 on every storage layer.

Secure Authentication

JWT tokens with short expiry, refresh token rotation, and optional 2FA for all business accounts.

Stripe-Only Payments

We never store raw card numbers. All payment data flows through Stripe and Paystack PCI-compliant vaults.

Audit Logs

Every sensitive action (login, booking change, refund) is logged with timestamp, IP, and user ID for full traceability.

GDPR Compliant

Data residency controls, right to erasure, consent management, and a Data Processing Agreement available on request.

Responsible Disclosure

If you discover a security vulnerability in AionBooking, please report it responsibly. We investigate all reports promptly and recognize researchers who help keep the platform safe.

Report a Vulnerability

Email: security@aionbooking.com · We aim to respond within 24 hours.

Legal & Compliance Documents

Transparency in how we operate and protect your data.

Privacy Policy

How we collect, use, and protect personal data.

Read
Terms of Service

The legal agreement governing use of the platform.

Read
GDPR Statement

How AionBooking complies with EU data regulations.

Read
Cookie Policy

What cookies we use and how to manage them.

Read