Security & trust
Your content. Your customers’ privacy. Your data to take with you.
ItemDocs runs the infrastructure. You own everything on it.
Nothing listed before publish
Drafts, hidden modules and unpublished products are never listed, linked or indexed; a draft’s page shows a neutral holding page. Uploaded files are served from unguessable addresses, so keep anything confidential out of ItemDocs.
Every upload validated
File type is verified by content, not extension. Size limits, image re-encoding, PDF active-content checks and rate limits protect every plan.
Tenant isolation
Every query is scoped to your organisation. Roles (owner, admin, editor, viewer) are enforced on the server, and every change is in the activity log.
Encrypted everywhere
HTTPS with HSTS for every page and file, a strict Content Security Policy and other security headers, encryption at rest, hashed session tokens and scrypt-hashed passwords.
Account protection
Sign-in attempts are rate-limited per account and per network. See and sign out your devices in Settings; changing or resetting a password signs out every other device.
Hosted in the EU
Application, database and files run in Frankfurt (Vercel fra1 and Neon on AWS eu-central-1). Pages are cached at the edge for speed.
You own the data
Export products, IDs, content, translations, files, team, registrations and the activity log as JSON at any time. Delete content, your account or your whole organisation yourself.
Privacy by default
Customers never need an account and product pages set no cookies. Analytics use a daily-changing hash instead of IP addresses and are deleted after 13 months.
What we store about customers
Page opens, QR scans, content views and search terms by country and device type. No accounts and no cookies to read a page. If a customer chooses to register a product, the details they enter go to that manufacturer, which is the controller; ItemDocs processes them under our Data Processing Agreement.
Search terms
What customers type into a product page’s search is kept for 13 months so manufacturers can fill content gaps. It is stored without a name, account or IP address.
Larger teams
Custom contracts and answers to security and procurement questionnaires on request. Every plan already includes team roles and an activity log. Sub-processors and retention periods are listed in the Privacy notice.