V.I.W
Security
Effective June 27, 2026
Your business data is sensitive, and protecting it is a core part of how V.I.W is built. This page explains, in plain English, the measures we take to keep your account, your data, and your payments safe.
Encryption in transit
All traffic between your device and V.I.W is protected with industry-standard TLS/HTTPS encryption, so the information you enter — quotes, invoices, client details, and more — can't be read as it travels across the internet.
Your password is never stored in plain text
Passwords are protected using one-way cryptographic hashing. We never store, log, or have the ability to see your actual password. If you ever forget it, you reset it with a secure, time-limited link sent to your email rather than us retrieving the old one.
Card payments are handled by Stripe
We use Stripe, a PCI-DSS Level 1 certified payment processor, for all card payments. Your customers' card details are entered directly into Stripe's secure systems and never touch or get stored on our servers. This is the same infrastructure trusted by millions of businesses worldwide.
Each account's data is isolated
V.I.W is a multi-tenant platform, which means many businesses use it — but every account's data is strictly scoped to that account. One business can never see, query, or access another business's jobs, clients, invoices, or files.
Files are stored privately
Logos, receipts, job photos, and documents you upload are stored as private files. They are served only through access-controlled links tied to your account or to the specific share link you choose to send — they are not left open on the public internet.
Sensitive integration tokens are encrypted at rest
When you connect an outside service such as QuickBooks Online, the access tokens that authorize that connection are encrypted at rest using strong (AES-256) encryption, so they are protected even at the storage layer.
Abuse and rate-limiting protections
Sign-in and other sensitive endpoints are rate-limited to help defend against automated attacks such as password guessing. We also apply safeguards to links that are sent by email so that automated scanners can't take irreversible actions on your behalf.
You own and control your data
Your data belongs to you. From your settings you can export a copy of your account data at any time, and you can request deletion of your account and its data. We do not sell your personal information. See our Privacy Policy for details on how information is handled.
Responsible disclosure
No system is perfectly secure, and we're always improving. If you believe you've found a security vulnerability, please let us know right away at Virtualiconworks@gmail.com so we can investigate and address it.
Questions
Have a question about how we protect your data? Reach us anytime at Virtualiconworks@gmail.com.