Tenant boundaries first
Every commercial record is scoped by store identity, membership and PostgreSQL row-level security.
K2S is an original SaaS foundation for modern commerce teams: isolated tenants, auditable authorization, policy-driven plans and a reusable API boundary for web and mobile.
K2S request path
Business rules are never entrusted to the browser.
The first K2S release establishes controls that remain useful when a store has one product or operates across regions.
Every commercial record is scoped by store identity, membership and PostgreSQL row-level security.
The browser never receives database, payment-provider or storage signing credentials.
A versioned API boundary keeps web and future Android / iOS clients on the same business rules.
Typed domain contracts and authorization rules stay server-side, ready for Android and iOS clients.