MADAR_OS back to the site
Security and your data

Where your data lives, who can reach it, and what your IT team needs.

Last updated 29 September 2026

This page is for business owners and their IT teams. It covers Madar OS and Madar POS. Everything on it is how Madar works today. Where something is not built yet, it says so.

For IT teams: what to allow on your network

Your own private workspace

Every customer gets a workspace of their own. It runs as its own set of containers, with its own database and its own private network on the server. No two customers share a database, and one workspace cannot reach another.

Customer workspaces run on a server of their own, apart from the servers we use for our own work. Today that server is in Oracle Cloud's Frankfurt region, in Germany, and Oracle encrypts its disks at rest. A Gulf region is on the way; until it opens, nothing is hosted in the Gulf. Our team has administrative access to these servers, so it can read a workspace's data. We use that access to keep them working and to restore a backup.

Encrypted connections only

Signing in

Who can do what

The owner decides who signs in, and each person has their own login. With Madar POS:

These rules are checked by the server on every request. They are not only hidden buttons.

Nightly encrypted backups

Every night, each workspace (its database, its files and its memory) is packed into one archive and encrypted before it leaves the server. The key that opens the archives is kept on no server, so neither server can read a backup. Each archive is kept for seven days on our servers, and a copy is stored in Oracle Cloud Object Storage in Frankfurt, apart from the server that runs your workspace.

We have checked that backups open. On 29 September 2026 we decrypted the backups of our own test workspaces and restored their databases into a spare database, and every table and every row came back. A full restore of a live workspace has not been rehearsed yet; that is on the way.

Payments

Plans bought on this website are paid through Paddle, our Merchant of Record. Paddle takes your card or payment details directly; card numbers never reach Madar. Paddle signs every message it sends us, and Madar checks the signature before it acts on one. An order agreed with us directly is invoiced by us and paid by bank transfer.

At the counter, Madar POS records how much of a sale was paid by card. The card itself goes through your own card machine; Madar never sees it.

Your data is yours

AI, as it really is

Madar POS runs on rules, not AI. Every price, total, VAT amount, stock level, alert and balance is worked out by fixed rules in your workspace's own database and server.

Madar's assistant is a separate part. Cashier and manager logins cannot open it, and the shop works without it. When the owner asks it something, the question and the parts of the business it needs to answer are sent to Anthropic, the AI provider named in our privacy policy, which writes the answer. Under Anthropic's commercial terms that is not used to train their models.

It asks before it sends. The assistant waits for the owner's yes before it sends a message on your behalf or changes anything in a connected service. The one thing it does there without asking is save a draft in your own mailbox, which sends nothing. Its answers are written by AI and can be wrong, so check anything that matters.

For IT teams

Madar runs in a web browser. It needs nothing on your network except the addresses below.

Addresses to allow

Ports and protocols

Nothing to install

Email

Optional

A new domain

madar-os.com was registered on 27 September 2026. Some filters block domains in their first weeks. If yours blocks Madar, allow the two addresses above.

Report a security problem

Write to security@madar-os.com. Tell us what you found and how to see it, and give us time to fix it before you share it with anyone else. Questions from your IT team go to the same address. The same contact is published, machine readable, at /.well-known/security.txt on this website. The same file on every workspace address is on the way.