Security Policy
Last updated: 01/07/2026
Last updated: 01/07/2026
WinetPay applies security measures commensurate with the sensitivity of the financial and personal data it processes.
1. Communications Security
All communications (browser ↔ platform, platform ↔ payment providers, platform ↔ routers, administration) are encrypted (HTTPS/TLS). MikroTik routers communicate on an outbound-only basis (PULL model), with no public IP address, VPN, or inbound NAT.
2. Account Security
Operator access relies on an identifier plus a recovery kit (link/QR/code); a password is optional; sessions are expirable, renewable, and revocable. Administrator access is protected by two-factor authentication (TOTP) and may be restricted by an IP address allowlist.
3. Transaction Security
Idempotency on all financial paths (protection against double payment / double withdrawal), uniqueness of payment events, an immutable (append-only) accounting ledger, and full traceability.
4. Protection of Secrets
Payment provider keys and other secrets are encrypted at rest and never exposed. Router and session tokens are stored in hashed form. Incoming webhooks are verified (signature) and idempotent.
5. Router Security
Authentication by secret token over a TLS channel, request validation, and logging. A degraded-TLS fallback mode, reserved for legacy equipment, is opt-in and traced (a "degraded TLS" badge).
6. Logging and Monitoring
Technical logs (errors, connections, incidents, synchronizations), anomaly detection, and an anti-fraud engine (alerts, automatic switch to restricted access for blocking rules).
7. Backups
Automatic encrypted backups with an off-site copy and a documented restoration procedure that is tested on a regular basis.
8. Reporting a Vulnerability
Any security issue may be reported responsibly to [to be completed]. We are committed to handling reports diligently.