VelopStore

Trust Center

A clear summary of implemented product practices, without claiming unverified certifications or controls.

Transport and accounts

The application adds HSTS on HTTPS, blocks MIME sniffing, protects sessions, and stores passwords as hashes.

Tenant isolation

Operational data is tied to a tenant identifier, with tenant context and permissions enforced on administration routes.

Payments

Card entry is handled by the payment provider; VelopStore checkout does not collect card numbers or security codes.

Privacy and ownership

Marketing tools load after consent, and the privacy policy explains processing purposes and customer rights.

Backups and incidents

We do not publish retention, recovery, or certification claims unless operationally configured and verified. Report incidents through the contact page.

Ready to get started?

Choose a plan and create your account and store yourself.

Start now