Rostriva Workforce & operations
SECURITY BY DESIGN

Operational control needs dependable data protection.

Rostriva uses layered technical and organisational controls to protect customer workspaces and limit access to the people and sites a user is authorised to manage.

Start your workspace
01

Secure authentication

Passwords are strongly hashed and sessions use secure, HTTP-only cookies with controlled expiry.

02

Role and site permissions

Workspace roles and site scopes restrict sensitive actions and operational visibility.

03

Audit history

Important access, configuration, workforce and rota actions create a traceable audit record.

04

Protected infrastructure

Production services use encrypted connections, security headers and a managed PostgreSQL database in the Frankfurt region.

05

Payment isolation

Stripe handles payment details; Rostriva does not receive or store complete card numbers or security codes.

06

Recovery controls

The paid production database provides point-in-time recovery, supported by documented recovery procedures.