Capabilities
Security and privacy themes
Security statements here are design intent. The launcher and the customer app have no code to audit, the packaging tool has not been audited, and the site makes no certification claim of any kind.
Status
Planned Everything on this page is a plan. The repository contains a catalog and design documents, not a released app. Entries are tagged with their own status.
Local-first data
Data lives on the shop's own devices by default; nothing requires a cloud account.
Read →DesignedNo telemetry
The README states no telemetry or data collection.
Read →PlannedRoles and permissions
Giving cashiers, supervisors and owners different rights, and limiting risky actions..
Read →PlannedAudit trail
An append-only record of edits, voids, discounts and logins..
Read →Not decidedEncryption at rest
Protecting the database file on a lost device.
Read →PlannedBackups
Local backups to drives or another device, with restore tests..
Read →PlannedRestore
Rebuilding a device from a backup, checking integrity first..
Read →PlannedDevice pairing
Trusting a second device on the shop network..
Read →Not decidedSigned files
Interchange documents are planned as signed files so they can be verified offline.
Read →PlannedData minimisation
Only collecting what the sale needs, with customers' details optional..
Read →PlannedPINs and sessions
Quick staff logins that time out safely..
Read →PlannedSecure updates
Updating without a mandatory internet connection, with rollback..
Read →DesignedSoftware supply chain
Building and signing releases and checking dependencies.
Read →GapThreat model
A written list of what the system defends against.
Read →