Skip to content

Security

Your financial data, protected in layers.

Controls built into the platform, not bolted on. We describe only what the product does — and we do not claim certifications we do not hold.

No borrowed badges. Intelligent ERP is not currently SOC 2, ISO 27001, HIPAA or PCI DSS certified. When an independent audit confirms a certification, it will appear here.
  1. L1

    Access

    Who can do what?

    • Role-based access control

      Define roles once and apply them across modules, branches and document types.

    • Fine-grained permissions

      Control view, create, edit, approve and delete — down to fields like cost and margin.

    • Optional MFA

      Require multi-factor sign-in for any role.

    • Session management

      Idle timeouts, active-session lists and remote sign-out.

  2. L2

    Data

    Is it protected in motion and at rest?

    • Encryption in transit

      All traffic between browsers, devices and our servers is encrypted with TLS.

    • Encryption at rest

      Databases and backups are encrypted at the storage layer.

    • Secure password handling

      Passwords are salted and hashed with a modern adaptive algorithm — never stored in plain text.

    • Secure API authentication

      Scoped, revocable API tokens for integrations.

  3. L3

    Accountability

    Can we prove what happened?

    • Audit logging

      User, timestamp, action and before/after values recorded for every change.

    • IP & device logging

      Sign-ins recorded with IP address and device for review.

  4. L4

    Resilience

    What if something fails?

    • Backup architecture

      Automated, encrypted backups with point-in-time recovery.

    • Disaster recovery

      A documented, tested recovery process with defined recovery objectives.

Compliance

What we do and do not claim.

Intelligent ERP does not currently hold SOC 2, ISO 27001, HIPAA or PCI DSS certification, and we will not describe ourselves as compliant with any framework until an independent audit confirms it. Card payments at the POS are processed by your payment provider’s certified terminals; Intelligent ERP does not store full card numbers.

Responsible disclosure

Found a vulnerability?

Please report it through our contact page with “Security” in the message. We acknowledge reports within two business days and will keep you informed while we investigate.

Questions from your IT or audit team?

We’ll walk them through access control, audit trails, backups and recovery in detail.

Closing entry

FY 2026

  • FinanceDouble-entry ledger
  • Sales & POSPosted on sale
  • InventoryValued at landed cost
  • OperationsLinked documents
  • CustomersStatements on WhatsApp
One platformDifference 0.00