Security · DPA overview

Your customers’ SKUs, rates & COAs stay theirs.

PackFlow is built on Supabase (PostgreSQL + Auth + Storage) with row-level security. Every query is org-scoped — a buyer can never see another brand’s data, and vendor staff see only what their role allows.

Org isolation (RLS)

portal_users, orders, SKUs, documents — all filtered by org_id at the database. No app-level “hope”.

Role-based access

Administrator / Production / Prepress / CS vs Brand Owner / Procurement / Quality Viewer. canApprove gates artwork sign-off; Quality Viewers are view-only.

Audit trails

Every approval, stage move, ETA change, archive clearance stamped with actor + role + timestamp. Exportable for customer audits.

Encryption + backups

TLS in transit, encrypted at rest on Supabase. Point-in-time recovery, daily backups. Storage buckets private per org.

Document control

Versioned proofs (v1, v2…), revision-tracked dielines, COAs immutable once issued. Nothing silently overwritten.

Responsible disclosure

Report issues to [email protected]. We acknowledge in 48h, patch criticals first, and publish a post-mortem to affected vendors.

Subprocessors & data residency

  • Hosting + DB + Auth + Storage: Supabase (AWS-backed, region pinned at onboarding — ap-south-1 default for India).
  • App hosting: Vercel (or your VPC on Enterprise).
  • No ad trackers. Product analytics only with vendor consent.
  • DPA available on request — ask for the signed copy.

Your responsibilities

Keep user lists current (disable leavers), grant canApprove sparingly, and download COAs you must retain per your own QMS. We provide the trail — you own the SOP.