VektorDTF
Trust & Security

How we protect your work

This page describes the security and privacy practices currently in place for VektorDTF, so you know how your account and design data are handled.

This page is maintained by the VektorDTF team to answer common security and privacy questions. It describes current product capabilities and is not an independent audit or certification.

Authentication

Accounts sign in with email & password or Google sign-in. Sessions are managed by our authentication provider; access to the app requires a valid signed-in session.

Data isolation

Your designs, threads, folders, and exports are protected by row-level security so each account can only read and write its own records.

Private storage

Uploaded and generated artwork is kept in private storage buckets. Files are served through scoped, time-limited links rather than open public URLs.

Server-side processing

AI generation runs through authenticated server endpoints. Requests are validated and require a signed-in user before any processing happens.

Safe rendering

AI-generated vector (SVG) content is sanitized before it is displayed, removing scripts and other active content.

Shared responsibility

Security is a shared effort. VektorDTF provides the application controls described above and relies on its hosting and infrastructure providers for platform-level security. As a customer, you are responsible for keeping your sign-in credentials private and for the content you choose to upload and generate.

Report a security concern

If you believe you have found a security or privacy issue, please contact us so we can investigate.

security@vektordtf.com