Security
Reliable by default.
Your clients’ work, your numbers and your people’s records deserve care. Here is how VEGA looks after them, in plain words.
How it works
The safeguards built in.
Each company kept apart
Row-level security in the database: a company can only ever read its own records.
Encrypted
HTTPS everywhere. Passwords are hashed with bcrypt; keys and tokens for connected services are encrypted with AES-256-GCM.
Backed up nightly
A full backup of the database and files every night, checked by a restore drill when it is made.
Roles and permissions
Owner, Admin, Manager, Member and Client viewer, with extra permissions per module.
Audit log
Role changes, failed sign-ins and other security events are recorded.
Your data, yours to take
The owner can export all of the company’s data and files at any time.
Questions
About security.
Where is VEGA hosted?
On a dedicated virtual server at Hostinger, with nightly backups of the database and files.
Can VEGA staff see my data?
Only through a support session, which is recorded in your company’s own audit trail.
Is there a status page?
Yes, at /status, with current incidents and planned maintenance.
Does VEGA support two-step sign-in?
Not yet for company users. It is on the roadmap.
Questions from your security team?
We are happy to answer them.