Stable Pro
Back to Privacy, GDPR & Security
Privacy, GDPR & Securityโ€ข4 min read

GDPR Data Export, Security & MFA Authentication

How to perform full GDPR-compliant data exports and secure your account with multi-factor authentication.

Stable Pro is designed to comply with the European General Data Protection Regulation (GDPR - EU 2016/679).

All data is stored on servers located in the European Union (Frankfurt) with 256-bit SSL/TLS encryption. Data isolation between different equestrian centers is guaranteed at the database level through Row Level Security (RLS).


The "Security and access" window with two-step verification (2FA) enabled and the recent sign-in log

Data isolation (Multi-Tenancy)

Each equestrian center operates in a fully isolated environment. One stable's data is never accessible from another, thanks to the multi-tenant architecture with Row Level Security applied to every database transaction.

Multi-Factor Authentication (MFA)

To protect access to the management system:

  1. Open the user menu at the top right (the avatar with your initials) and choose Security & Access.
  2. In the Two-step verification (2FA) section, turn on the switch.
  3. Scan the QR code with an Authenticator app (e.g. Google Authenticator, 1Password, Authy).
  4. Enter the 6-digit code generated by the app and press Verify and Activate.
  5. On every subsequent login, a temporary code from the app will be required in addition to the password.

Access logs and session control

In the same Security & Access window you can also:

  • Check the Access Logs, the list of logins over the last 6 months with browser, operating system and IP address.
  • See, in the Your Devices section, the device you are connected from right now.
  • Press Sign out all other devices to close all the other sessions at once, except the one you are using.

Data retention and deletion

Stable Pro applies GDPR-compliant data retention policies:

  • Data is retained for the period necessary to provide the service.
  • Automated data retention processes manage scheduled cleanup of data no longer needed.
  • Complete data deletion can be requested at any time (right to be forgotten).

Tip: always enable MFA on all Admin accounts for maximum security of your equestrian center.