Security & data governance

Security Built for Multi-Brand Operators.

The short answer

Every brand's data is isolated from every other business on the platform. Internal access is by a named person, for a named reason, and logged. Your data stays yours, with a clean export anytime. Card payments run through a PCI-DSS-compliant provider. And the detailed documentation your diligence team needs — controls, data handling, subprocessors, and current certification status — is available under NDA.

Talk to us See the controls ›
Why it matters

Diligence Shouldn't Stall on the Software.

When you acquire and roll up brands, the operating system becomes a diligence line item — who can see the data, whether each brand is isolated, whether you actually own it, and whether payments are handled cleanly. Amplify is built so those answers are short, consistent, and documented — the same on the tenth acquisition as the first.

The controls

Security Controls in Place Today

Control areaHow Amplify handles it
Tenant isolationEach brand is a separate tenant; its data is walled off from every other business on the platform — competitors included.
Internal accessAccess is by a named person, for a named reason, and every entry is logged and customer-auditable. Parties with a competing interest are excluded from behind-the-scenes access by policy.
Role-based permissionsFranchisor, manager, and staff scopes — people see only what their role allows, across one location or the whole brand.
Identity at the point of actionFacial-recognition login ties every session and clock-in to a real, present person — no shared logins, no buddy-punching.
Audit trailEvery edit, void, comp, discount, and refund is attributable and immutable — nothing changes without a name attached.
PaymentsCard data is handled by a PCI-DSS-compliant payment provider, so sensitive card details don't sit inside Amplify.
Data ownership & exportYour data is yours. Export it cleanly anytime — we never sell it and never market to your clients.
Attributable by design

Every Action Has a Name on It.

Most platforms can tell you what changed. Amplify tells you who — because identity is captured at login and every change writes to an immutable log you can audit yourself. It's the same architecture that keeps each brand's data isolated and keeps competing interests out of the back office.

For your diligence team

The Documentation, Under NDA.

Qualified buyers get the full security package during diligence, not a sales sheet: access-control and data-handling policies, retention and deletion, our subprocessor list, encryption practices, incident response, and current certification status. Ask, and we'll share it under NDA.

We don't publish certification claims we can't stand behind. What's architectural — isolation, attributable access, the immutable audit trail, and a PCI-DSS-compliant payments provider — is in place today and shown in the walkthrough.

FAQ

Amplify Security: FAQ

Is each brand's data isolated from the others?
Yes. Every brand is a separate tenant, and its data is walled off from every other business on the platform — competitors included. It's the standard multi-tenant isolation buyers already trust, and Amplify goes further by excluding any competing interest from behind-the-scenes access.
Who at Amplify can see our data, and is it logged?
Only a named person at Amplify, for a named reason, can access your data, and every entry is logged and auditable by you. Support and engineering have governed operational access only, so nothing is anonymous and nothing goes unlogged. Anyone with a competing interest is excluded from behind-the-scenes access entirely. We never market to your clients and never sell your data.
How are card payments secured?
Card payments on Amplify are processed through a PCI-DSS-compliant payment provider. Sensitive card data is handled by that provider rather than sitting inside the platform, which reduces the surface your diligence team has to assess. Payments are built in, so there's no separate processor to bolt on, and card data stays with the provider whose job is to protect it.
Do you have SOC 2 or other formal certifications?
Amplify shares its current certification status and the underlying control documentation with your diligence team under NDA, rather than publishing a badge we can't stand behind. The architecture that matters for diligence is in place today: per-brand isolation, named-and-logged access, an immutable audit trail, and a PCI-DSS-compliant payments provider. Ask during diligence and we'll walk your team through the documentation directly.
See it live

Bring Your Diligence Team.
We'll Bring the Documentation.

A walkthrough for operators and their diligence team — how isolation, access, audit, and payments actually work, on your portfolio.

Book a demo →See PE & portfolio