Security
What we ask for, what we refuse, how we store it, and what happens if something goes wrong.
We never ask for
- Your password, for anything.
- A verification or two-factor code.
- A backup or recovery code.
- A full card number, an expiry date or a CVV.
- Your JMBG.
- Unsupervised remote access to your computer.
If someone contacts you asking for any of these and says they are from Reši Lokalno, they are not. Tell us and we will look into it.
What we do instead
- We use each platform's own recovery, appeal and transfer procedures — the same ones you could use, run by someone who has done it before.
- We work from documents that prove ownership: invoices, contracts, company registration, registrar records.
- We act only on what you have authorised in writing, and only on assets you are entitled to control.
- Where a change has to be made by you, we walk you through it rather than asking you to hand over access.
How your information is handled
We ask for the least we can work with, and say what you can black out before sending a document.
Uploaded files are kept in private storage. There is no public link to any of them, and every download is authorised and recorded.
Access to your case is bound to your case. Signing in to one case gives no visibility of any other.
Every action on a case is recorded with who did it and when.
Evidence files are deleted on a retention schedule after a case closes; you can ask us to delete them sooner.
The honest limits
We are an independent support service. We do not control what Meta, Google, a bank, a registrar or RNIDS decides, and no amount of good preparation guarantees the answer you want. What we can promise is that we will work through the proper channel, tell you what we are doing, and tell you plainly when it is not going our way.
Found a problem with our own security?
Something is broken. Let's find out what.
Opening a case costs nothing and commits you to nothing. We will tell you what we think is happening before any work is agreed.