Security by design
Vordali is designed to reduce the amount of sensitive information handled directly by the platform and to rely on established providers for specialized services.
Payment security
Payments are processed through Stripe. Vordali does not store full payment-card numbers or bank credentials.
Encryption
Vordali uses HTTPS/TLS for data transmitted between browsers, APIs, and service providers.
Access controls
Merchant access requires authentication. Administrative access is limited and should follow least-privilege practices.
Monitoring and logging
Vordali records operational and security events needed to investigate issues, prevent abuse, and support reliable service.
Responsible disclosure
To report a potential vulnerability, email security@vordali.com.
