Half an hour with someone from our team, using your own roster rather than a demo one.
The hours you approved go over to payroll without anyone retyping them.
The short version, before the long one: we collect what the app needs to run your roster and your payroll, we keep it in your account, and we do not sell it to anybody.
Zon Staff holds pay rates, hours and, if you switch it on, a photograph of somebody at the moment they started work. That is employment data about real people, so this page sets out plainly how it is kept.
The service runs on managed cloud infrastructure in the United States. Production systems are separated from development and test systems, and no live customer data is copied into either. Application and database servers are not reachable from the public internet except through the application itself.
All traffic between your browser, the app, the POS and our servers is encrypted with TLS 1.2 or better, and HTTP requests are redirected to HTTPS. Data is encrypted at rest on our databases, file storage and backups. Passwords are stored as salted one way hashes and are never readable by us or recoverable in plain text.
Inside your store, access follows the roles you set. Managers see the stores you hand them, pay rates are visible only to the roles you allow, and every edit to a time record carries the name of whoever made it and the moment they did it.
Inside our company, access to production data is limited to the small number of engineers and support staff whose job needs it, it is granted individually rather than shared, and it is removed when someone changes role or leaves. Support opens an account to investigate a ticket you have raised, and that access is logged.
The app reads the parts of your Shopify store it needs to do its job: shop details, locations, staff accounts, and the order data that commission is calculated from. It requests the narrowest set of scopes that makes those features work, and we handle Shopify protected customer data under Shopify's own requirements, including responding to the shop and customer data request webhooks and deleting data when a store uninstalls.
These are the third parties that may process data on our behalf, and what each one does:
Each is under a written contract that limits them to processing on our instructions. Ask support@zonstaff.com for the named list with the current providers on it, and for a data processing agreement.
Databases are backed up daily and backups are encrypted and retained for 30 days. Restores are tested, because a backup nobody has ever restored is a hope rather than a backup. Uninstalling keeps your records for 30 days before deletion, which is what makes a reinstall painless.
If personal data in our care is breached, we will notify affected store owners without undue delay and in any case within 72 hours of becoming aware of it, with what we know, what we are doing, and what you may need to do. Where you are the controller of your staff data, that notice is what lets you meet your own obligations.
Send security reports to support@zonstaff.com with the word security in the subject. Tell us what you found and how to reproduce it. We acknowledge within one business day, we will not take legal action against anyone who reports a genuine issue in good faith and gives us a reasonable chance to fix it, and we are happy to credit you once it is closed.