Security
Security at Vessark
Vessark sits close to customer records, billing, and credentials, so we treat security as a product requirement, not a checkbox. Our controls are aligned with SOC 2 trust principles.
Encryption
- All traffic is encrypted in transit with TLS 1.3.
- Data is encrypted at rest with AES-256.
Access control
- Role-based access control across every capability area.
- Single sign-on via SAML on Business and Enterprise plans.
- Scoped API keys per integration, with one-click service token rotation.
- A complete audit trail of operator and API activity.
Deployment isolation
Enterprise deployments run inside your own network. Hosted environments are isolated per customer, with daily backups and tested restores.
Reporting an issue
If you believe you've found a vulnerability in Vessark, write to ops@vessark.com and we'll respond promptly.