Security & Data Protection
Naxerio is designed with security and data protection as a foundation. We use modern cloud infrastructure and strict access controls to ensure that customer data remains private, isolated, and protected at all times.
Where your data is stored
All Naxerio data is stored within the European Union on secure cloud infrastructure provided by Amazon Web Services (AWS), via Supabase. Data does not leave the EU unless explicitly required by customer configuration.
How access is secured
Customer data is logically isolated per organization. Access is enforced at the database level using Row Level Security (RLS), ensuring users can only access data belonging to their own organization.
File & document security
All documents and photos are stored in private storage buckets. Access to files is restricted using organization-based security policies. Files are not publicly accessible and can only be accessed by authorized users.
Authentication & permissions
User authentication is handled securely via Supabase Auth. All sensitive operations require authenticated access, and permissions are verified before any data is read or modified.
Compliance & responsibility
Naxerio acts as a data processor. Our infrastructure providers (Supabase and AWS) act as sub-processors. We follow GDPR/AVG principles for data minimization, access control, and transparency.
If you have any questions about security or data protection, please contact us at hello@naxerio.com.