01 · Programs
Program editor with live preview
In the program editor you set how many stamps a guest has to collect for the reward, what the reward promise reads, whether the card works as "every 10th free" or "one reward at 10 stamps." Over 70 adjustments — brand color, accent color, stamp icon (upload / emoji / default star), background image for strip + reward state, eyebrow text, headline size, sunburst animation, push broadcasts, email-capture toggle, daily stamp cap. A live wallet simulator shows every change instantly, pixel-identical to what lands in the real Apple or Google Wallet.
- Four bonus modes: at_max / before_max / circle-number / image-only
- Custom goal icon in before_max mode (your own stamp icon in the goal slot)
- Reward-state overrides: custom background, custom headline position + size
- Daily stamp cap (default 1, configurable 0–10)
- Sharing lock — on every plan: the card is valid only on the guest’s own device
02 · Wallet simulator
Live preview for Apple Wallet + Google Wallet
Instead of a static mockup graphic, the program editor mounts a real preview that runs through the same server render pipeline as the final wallet bytes. You scroll through stamp counts 0/10 → 10/10, switch between iOS frame and Android frame, and see how the reward state (confetti, sunburst, custom headline) triggers at N-1 or N. No "we think it might look like this" — what you see is what the guest sees.
- Pixel-identical to the production .pkpass / Google Wallet class
- iOS frame (Apple Wallet StoreCard) + Android frame (Google Wallet Loyalty)
- Stamp scrubber from 0 to stampsRequired
- Reward-state toggle: which headline + background is available at reward?
03 · Branding
Logo, colors, stamp icon — per program
Upload your logo (PNG/JPG/SVG, max 10 MB). The server normalizes it to 1024×1024 and automatically generates three platform-compliant variants: Apple Wallet banner (480×150 fits-inside), Google Wallet circle (660×660 with 15% safe area against the circle mask), UI thumb (64×64 WebP). A 1.2 MB PNG shrinks to a few kilobytes per render — without you doing anything. You pick brand color + accent color in the color picker; the stamp icon can be your own image, an emoji or the default star.
- Apple/Google variants generated automatically on save — no manual pixel work
- Optional background image for strip + separate reward background image
- Custom eyebrow text + headline color in the reward state
- Watermark toggle: white-label cards without the reloop wordmark (Premium plan)
04 · Customers
Customer overview + GDPR exports
The Customers tab shows every cardholder with current stamps, last visit, number of redeemed rewards and (optionally) email. Filter by program, status (active / paused / expired), date. Per card you see the complete stamp history with staff member, location and timestamp — valuable for disputes ("No, I really was here yesterday"). GDPR exports + deletion requests are one click: per customer, all data lands in your download as JSON / CSV.
- Search + filter: program × status × date
- Complete stamp history with audit trail (staff, location, IP, time)
- Art. 15 GDPR access: per-customer JSON export in 3 clicks
- Art. 17 GDPR deletion: soft delete with 90-day retention of aggregates
05 · Reporting
Real-time reporting + automatic monthly PDF
The overview dashboard shows active cards, stamps issued, rewards redeemed, conversion rate (stamp → reward → repeat visit), top programs, top locations, top staff members. Charts are interactive (7d / 30d / 90d toggle, filterable per program). On the 1st of each month you automatically get a PDF report by email — broken down per location, ready to forward to accounting or location management.
- Live charts: stamp volume, reward redemptions, new vs returning cards
- Breakable down per program + per location + per staff member
- Monthly PDF automatically by email (German, A4, branded)
- CSV export of all stamp transactions (for your own BI tools)
06 · Push broadcasts
Wallet push to all cardholders
With a broadcast you send a push message to all Apple Wallet and Google Wallet cards of a program (or all programs of your business). Header + body, 80 + 280 character limit, immediately or scheduled. The message appears in the guest’s wallet app — no email spam filter, no extra push permission to request. Ideal for campaigns ("Happy hour today 4-6pm"), holiday specials, opening-hours updates. The audit log shows what went to how many devices and when.
- Apple PassKit + Google Wallet API in one action
- Per program or "to all active cards of my business"
- Header (80 characters) + body (280 characters)
- Push broadcasts on every plan — reach follows from your active cards
07 · Newsletter
Email newsletter to email subscribers
Optionally enable email capture per program during wallet onboarding. Subscribers land in your newsletter list, from which you send HTML-formatted campaigns — with your logo, your brand colors and click tracking. Subscribe / unsubscribe GDPR-compliant with double opt-in. Email marketing is part of the Premium plan — availability by plan is on the pricing page.
- Email-capture toggle per program (optional, gateable as a stamp bonus)
- Live preview in the editor with your logo + brand color
- Double opt-in with confirmation email (GDPR §6 + §7 UWG-compliant)
- Send history + click tracking per campaign
08 · Locations + team
Multi-location setup + staff management
Per location you store the address, geo coordinates (for wallet geofencing — the card surfaces on the lock screen when the guest is nearby) and a staff QR code. Staff members get their own logins (email + password or directly via staff QR), can stamp from their smartphone, and every action is written to the audit log with staff ID + location + time. Location management sees in the monthly PDF who issued how many stamps.
- Geo coordinates per location → Apple Wallet shows the card on site
- Staff QR login for staff members without an email account
- Per-staff statistics: who stamps the most
- Role permissions: Owner, Admin, Staff — each role sees only its own area
09 · Anti-fraud + audit
Stamp cap + HMAC QR + audit log
Every QR code is HMAC-SHA256-signed and expires after 60 seconds — a screenshot of a stamp QR cannot be redeemed later. Per program you set a daily stamp cap (default 1) — no guest gets 10 stamps at once from the same café. Only logged-in staff may stamp; every action lands in the immutable audit log with IP, user agent, staff ID and location. In a dispute you have forensic evidence.
- QR tokens HMAC-SHA256-signed, TTL 60s — screenshot-proof
- Daily stamp cap per program (0 = off, default 1)
- Audit log: every stamp action with forensic metadata
- Sharing lock (on every plan): card bound to one device, no multi-device
10 · NFC tap
NFC tap-to-stamp at the counter
Alongside the QR scan by your staff, the guest can also stamp themselves: they hold their phone against the NFC tag on the counter and the count on the wallet card goes up. Every tap produces a freshly signed one-time code straight from the chip (NTAG 424 DNA) — a photographed link cannot be reused. You manage the tags in the dashboard: assign them to a program and a location, follow their status, revoke one if it goes missing. All program rules still apply, including the daily stamp cap.
- The guest taps for themselves — no second device and no app on your side
- NTAG 424 DNA: every tap is cryptographically signed and valid only once
- Tag management in the dashboard: assign, follow status, revoke
- Daily stamp cap and audit log apply just as with the QR stamp
11 · Billing
Transparent plan overview + self-service switching
In the Billing tab you see your current plan, active cards against the plan limit, monthly invoice, next billing date. Plan upgrade with one click (Stripe checkout). At 80% and 100% of your card limit you automatically get a reminder — existing cards keep working, only new sign-ups are throttled (no sudden lockout).
- 4 plans: Starter (€0), Business (€9.90), Premium (€29.90), Enterprise (on request) — net prices per month
- Self-service switching via Stripe checkout, cancelable monthly
- 80% and 100% limit warnings by email
- Invoice as PDF, sent automatically each month
12 · Audit + compliance
DPA, GDPR, EU hosting
Data processing agreement (DPA) as a PDF download — pre-signed in the sense of Art. 28 GDPR. Hosting on Google Cloud europe-west3 (Frankfurt), no data leaves the EU. Cookieless: no cookie banner needed, because no personalized trackers. Privacy policy + terms maintained continuously. On request you get penetration-test reports and backup-strategy documents.
- DPA PDF (Art. 28 GDPR) downloadable in the dashboard
- EU hosting: GCP europe-west3, data does not leave the EU
- Cookieless: no banner, no tracker — GDPR-compliant out of the box
- Backups: daily, 30-day retention, cross-region replication