Security
Security Overview
HelloBonjour is designed to protect appointment operations, customer records, and business workflows with practical controls for modern service businesses.
Last updated April 2026
Data protection
Sensitive operational and customer data is protected with application-level controls, encrypted transport, protected storage patterns, and limited access by role and purpose.
Access controls
Dashboard access supports authenticated user accounts, role-aware workflows, multi-factor authentication support, business membership controls, and account-level language preferences.
Payments
Payment workflows rely on supported payment processors. HelloBonjour avoids storing raw card details and uses processor-backed payment method handling where card-on-file or payment collection features are enabled.
Operational safeguards
We use logging, rate limiting, secure upload handling, record access checks, retention workflows, and internal review patterns to reduce accidental exposure and abuse.
Responsible disclosure
If you believe you found a security issue, contact security@hellobonjour.app with enough detail for us to investigate.