This page describes the security and privacy practices currently in place for VektorDTF, so you know how your account and design data are handled.
This page is maintained by the VektorDTF team to answer common security and privacy questions. It describes current product capabilities and is not an independent audit or certification.
Accounts sign in with email & password or Google sign-in. Sessions are managed by our authentication provider; access to the app requires a valid signed-in session.
Your designs, threads, folders, and exports are protected by row-level security so each account can only read and write its own records.
Uploaded and generated artwork is kept in private storage buckets. Files are served through scoped, time-limited links rather than open public URLs.
AI generation runs through authenticated server endpoints. Requests are validated and require a signed-in user before any processing happens.
AI-generated vector (SVG) content is sanitized before it is displayed, removing scripts and other active content.
Security is a shared effort. VektorDTF provides the application controls described above and relies on its hosting and infrastructure providers for platform-level security. As a customer, you are responsible for keeping your sign-in credentials private and for the content you choose to upload and generate.
If you believe you have found a security or privacy issue, please contact us so we can investigate.
security@vektordtf.com