Early Access: Get 3 Months Free — Limited SpotsJoin now

Security

Inventory software security your team can trust

Inventory is trust. StockZip is built with tenant isolation, role-based access, and complete audit trails so your team can move fast without losing confidence in your data.

SOC 2 compliant infrastructure

StockZip runs on Supabase, which maintains SOC 2 Type II compliance for its infrastructure.

Secure cloud hosting

Hosted in reputable data centers with physical security, redundancy, and disaster recovery.

Regular backups

Automated daily backups with point-in-time recovery capability for disaster scenarios.

Security built in, not bolted on

Every security feature is designed for small teams who need protection without complexity.

Row-level security

Tenant isolation enforced at the database layer. Every query is filtered to only return data belonging to your organization.

Role-based access

Admin, Manager, and Staff roles with granular permissions. Control who can edit inventory, manage settings, or delete items.

Complete audit trail

Every inventory change is logged with who, what, when, and why. Review the full history of any item or location.

Encryption everywhere

TLS 1.2+ for data in transit, AES-256 for data at rest. Your inventory data is protected at every stage.

Location-scoped access

Restrict team members to specific warehouses or locations. They only see what you allow.

Data portability

Export your data anytime as CSV. You own your data and can take it with you if you leave.

Role-based permissions

Control exactly what each team member can do. Default roles cover most use cases, and you can customize as needed.

ActionAdminManagerStaff
View inventory
Edit item quantities
Create new items
Delete items
Manage locations
Manage team members
View audit trail
Export data

Complete audit trail

Every inventory change is logged automatically. No guesswork when you need to answer "what happened?"

What gets logged

  • Quantity changes (add, remove, adjust)
  • Location transfers
  • Check-in/check-out events
  • Item creation and deletion
  • User and permission changes

What you can see

  • Who made the change (user name/email)
  • When it happened (timestamp)
  • What changed (before/after values)
  • Why (reason code or note, if provided)
  • How (web, mobile, API)

Security should be simple

You should not need an IT team to run inventory securely. StockZip focuses on the basics that prevent real problems: tenant isolation, access control, and an audit trail your team can understand.

  • Row-level security enforced at database layer
  • Role-based access out of the box
  • Full audit trail for accountability

Need help? We've got answers

Common questions about scanning, offline mode, pricing, and migration.

StockZip uses strict database row-level security (RLS) enforced at the database layer, not just application logic. Each tenant can only access their own data, and this is enforced on every query.