VectoFin

Legal & Security Portal

Our compliance documentation, security guidelines, and legal agreements

Privacy Statement

Effective Date: July 11, 2026

At VectoFin, we are committed to safeguarding your privacy and protecting your business, financial, and personal records. This Privacy Policy details how we collect, store, and process your ledger information within our multi-tenant accounting platform.

1. Information We Collect

To deliver our ledger accounting services, we collect information belonging to registered users and businesses, including:

  • Account Credentials: Name, business email address, hashed passwords, and profile settings.
  • Business Ledger Data: Financial ledger transactions, invoice records, customer and vendor directories, tax registers, and inventory logs.
  • Bank Feed Integrations: Synced bank feeds, matched statement descriptors, and banking reference logs.

2. Cryptographic Protection & Tenant Isolation

Your ledger data is kept strictly private. Unlike legacy single-database systems, VectoFin implements rigorous technological safeguards:

  • Isolated Database Files: Each tenant's ledger dataset is isolated in a separate, dedicated database file on our server.
  • Military-Grade Encryption: Every database is encrypted at rest using AES-256-CBC encryption. Keys are resolved and scoped dynamically per active session.

Note on Third-Party Disclosures: We do NOT sell, lease, trade, or distribute your financial ledgers or business contact records to any marketing firms, brokers, or external third parties. Data is used exclusively to compile reports and audits for your specific organization.

3. Access Controls & Retentions

Ledger data remains in our secure databases until explicitly deleted by the account Owner. Owners hold full authority to invite and terminate company collaborators, configure user roles, and request database deletion via the cPanel tool.

Document Ref: VF-PP-2026-V1 Last Updated: 2026-07-11

Terms of Service

Effective Date: July 11, 2026

Welcome to VectoFin. By accessing or using our double-entry ledger platform, you agree to comply with and be bound by the following Terms of Service. Please read these terms carefully before starting.

1. Account Registration and Subdomains

To access VectoFin, you must establish an account and select a unique tenant workspace identifier. You are responsible for:

  • Maintaining the strict confidentiality of your account login credentials.
  • Restricting unauthorized access to your device.
  • All actions and financial statements recorded under your workspace tenant.

2. Proper and Fair Service Usage

VectoFin grants users a non-exclusive, non-transferable, revocable license to access the ledger services. You agree NOT to:

  • Use the platform for any illegal or fraudulent auditing purposes.
  • Attempt to breach the multi-tenant session isolation or access other tenants' database structures.
  • Overload our API endpoints with malicious automated scripts or denial of service attacks.

3. Subscription Tiers & Billing

VectoFin operates under a subscription model. Billing plans are set by the workspace Owner. Failure to keep subscriptions active may result in temporary database suspension. Suspended databases remain securely encrypted but are locked until the subscription is reinstated.

Disclaimer of Ledger Liability: While we implement advanced double-entry validation metrics (e.g. Assets = Liabilities + Equity), the accuracy of tax reports and ledger inputs remains the sole responsibility of the company accountant and users. VectoFin is not responsible for financial audits or filings.

Document Ref: VF-TOS-2026-V1 Last Updated: 2026-07-11

Security Guidelines

VectoFin Security Architecture & Data Safeguards

Security is the foundation of the VectoFin multi-tenant platform. We have built our systems from the ground up utilizing enterprise-level isolation protocols and cryptographic standards to ensure your financial assets are protected.

1. Multi-Tenant Database Isolation

Rather than placing all client records in a single shared SQL table, VectoFin uses a **Physical Isolation Paradigm**. Each registered business has a dedicated, sandboxed JSON database file. This ensures that:

  • An error or vulnerability in one tenant's view can never leak data to another tenant.
  • Cross-tenant query vulnerabilities are logically impossible.

2. Cryptographic Layer & Encryption

Our server enforces strong encryption at rest and in transit:

  • At Rest: Every tenant database file is encrypted dynamically on the filesystem using **AES-256-CBC** with unique scrypt-derived cryptographic keys.
  • In Transit: All communications between your browser and our server are wrapped in high-grade **SSL/TLS** encryption.

3. cPanel Monitoring and Backup Schedulers

We perform automated checks to verify the health and security of our ecosystem:

  • Continuous Backup Schedulers: Database snapshots are backed up securely to remote storage hubs using automated, encrypted transfer agents.
  • Secure Tunneling: Our server supports Cloudflare Tunnel integrations, allowing secure local deployment without opening public ports.

Reporting Security Flaws: If you detect a session anomaly or data access concern, please notify our response team immediately at security@vectofin.com. We investigate all vulnerability reports with priority.

Document Ref: VF-SEC-2026-V1 Last Updated: 2026-07-11

End User License Agreement (EULA)

Effective Date: July 11, 2026

This End User License Agreement is a legal contract between you (the registered business or individual) and VectoFin, governing your installation, activation, and use of the VectoFin ledger software suite.

1. License Grant and Boundaries

VectoFin grants you a limited, non-transferable, non-sublicensable, non-exclusive license to use the accounting platform solely for your business bookkeeping. You are explicitly prohibited from:

  • Decompiling, reverse engineering, or extracting the core double-entry engine or cryptographic middleware.
  • Redistributing or hosting the VectoFin software files as a stand-alone white-labeled product without our written consent.
  • Modifying or creating derivative software products based on the VectoFin codebase.

2. Ownership of Ledgers

You retain full, exclusive ownership of all invoices, estimates, ledger transactions, and contact profiles created during your use of the software. VectoFin claims no intellectual property rights or ownership interest over client-uploaded files or datasets.

3. Term and Termination

This license remains active until terminated by either party. VectoFin reserves the right to terminate your license immediately if you fail to comply with these terms, or if you engage in fraudulent financial transactions.

Termination and Export: Upon termination of this agreement, you will lose access to the platform views. You are encouraged to utilize the CSV Exporter tool to download and preserve your ledger records prior to requesting account closure.

Document Ref: VF-EULA-2026-V1 Last Updated: 2026-07-11
← Go Back