Other stores can no longer see your information. Previously, any logged-in account could look up another store's payment settings, printer settings, business registration number, tax ID and bank details. Access is now limited to your own store and the stores you manage.
Your customer-facing store page no longer exposes internal settings. The QR menu link now returns only what a guest needs.
Guest privacy protected. Another store's staff account could previously look up your customers' names, phone numbers, email addresses and loyalty point history. That is now blocked.
Loyalty points are protected. Earning, spending, adjusting, refunding and welcome points can only be applied to your own store's customers.
Customer Display protection. A fake cart could be pushed to another store's customer screen, the screen force-cleared, or a member attached to a sale in progress. Those real-time paths are now closed.
Mobile ordering fix
Orders can no longer land on the wrong store. If store details failed to load, a guest's session could be attached to a different store. The app now stops and asks the guest to retry instead of guessing.
Reliability
Everyday operation is unchanged — ordering, kitchen printing, payment and reports behave exactly as before, and no database changes were required.
Internal safety checks were expanded so this class of issue is caught automatically before any future release.