Skip to content

Security

Reliable by default.

Your clients’ work, your numbers and your people’s records deserve care. Here is how VEGA looks after them, in plain words.

How it works

The safeguards built in.

  • Each company kept apart

    Row-level security in the database: a company can only ever read its own records.

  • Encrypted

    HTTPS everywhere. Passwords are hashed with bcrypt; keys and tokens for connected services are encrypted with AES-256-GCM.

  • Backed up nightly

    A full backup of the database and files every night, checked by a restore drill when it is made.

  • Roles and permissions

    Owner, Admin, Manager, Member and Client viewer, with extra permissions per module.

  • Audit log

    Role changes, failed sign-ins and other security events are recorded.

  • Your data, yours to take

    The owner can export all of the company’s data and files at any time.

Questions

About security.

Where is VEGA hosted?

On a dedicated virtual server at Hostinger, with nightly backups of the database and files.

Can VEGA staff see my data?

Only through a support session, which is recorded in your company’s own audit trail.

Is there a status page?

Yes, at /status, with current incidents and planned maintenance.

Does VEGA support two-step sign-in?

Not yet for company users. It is on the roadmap.

Questions from your security team?

We are happy to answer them.