This website
This website is a product demonstration. It has no user accounts and does not ask for passwords or payment details. Its demo request form sends what you enter to WISIT through the website’s own server, which checks it before passing it on; nothing you type in the other demonstrations is sent.
The requests, guests, rooms and hotel records in the demonstrations are illustrative. No real guest or hotel data is used.
Fonts and images are served with the site itself, and the website loads no third-party analytics or advertising scripts. Its only third-party request fetches reference exchange rates from Frankfurter, and only when you change the Guest Value currency.
How we build
- Secure development. Changes are checked with automated linting, type checking and tests before release.
- Dependencies. Third-party packages are installed from a lockfile and checked for known vulnerabilities during development.
- Secrets. Credentials and keys are kept server-side, never in browser code or the source repository. The current website needs none.
- Access. Source code is kept in a private repository, and access to code, hosting and business systems is limited to the people who need it.
- Encryption in transit. The website is served over HTTPS.
WISIT deployments
Security requirements for a WISIT deployment depend on the property and its setup. If you are evaluating WISIT for your hotel, email WizBiz@wisit.in and we will discuss the details relevant to you.
Certifications
This page describes our practices; it is not a certification. We will only reference a security certification or independent attestation after it has been issued to WISIT.
Reporting a vulnerability
If you believe you have found a security vulnerability in this website or another WISIT service, please email WizBiz@wisit.in with “Security” in the subject line. Include a description of the issue, the affected URL or component, the steps to reproduce it and its potential impact.
Please act in good faith:
- give us reasonable time to investigate and fix the issue before sharing it publicly;
- do not access, change or delete data that is not yours;
- do not degrade or disrupt the service, for example through denial-of-service testing; and
- do not use social engineering, phishing or physical attacks.
We appreciate responsible reports and will work with you to understand and resolve them.
Contact
Security questions: email WizBiz@wisit.in.
WISIT Digital Innovation Labs Private Limited
