Built to be trusted with the statutory record

Veela holds your registers, your minute book and your ASIC corporate key. That's not a responsibility we take on with marketing language — this page describes the controls that are actually built.

👤

A named human approves everything

Nothing circulates, writes to a register or goes near ASIC without a named person's approval. Every AI draft passes an independent checker first, and drafts are clearly framed as unreviewed until a human signs off. Veela is built so the accountable officer stays accountable — and can prove it.

🔐

Secrets are sealed at rest

The most sensitive things you give Veela — your ASIC corporate key, your e-signature provider's API key — are envelope-encrypted with AES-256-GCM under a dedicated data-encryption key, separate from the keys that sign sessions. They're decrypted only at the moment of use, never shown back in full, and never logged.

🇦🇺

Australian primary database

Veela's production architecture requires its primary relational database to be provisioned in Sydney. That covers records at rest in the database, not every provider call or document-storage location. Those transfers and locations are identified in the privacy and subprocessor disclosures, and everything moves over TLS in transit.

🧾

Everything leaves a trail

Sign-ins, failed attempts, password changes and 2FA events are recorded to a security log you can review in Settings. Register edits carry a field-level audit trail, and the minute book is append-only — records are added, never silently rewritten.

Your account

  • Two-factor authentication with any authenticator app (TOTP), enabled from Settings
  • Sign out everywhere — one click revokes every session on every device
  • Login throttling that holds across our whole infrastructure, not per-server: repeated failures lock the attempt window, per account and per network
  • Session cookies are HttpOnly, Secure and host-locked; session tokens are signed with a pinned algorithm
  • Passwords are stored as bcrypt hashes — never in plain text, never recoverable, only resettable
  • Signing links are single-purpose bearer tokens — throttled, scoped so only owners and admins can see other signatories' links, and personal to the signatory they were issued to

The AI

  • Ask Veela answers from your constitution, registers and the documents you mark as context — with citations, so you can check its working
  • Every draft passes an independent checker before a human ever sees it as ready
  • The AI drafts and explains; it never signs, lodges, or writes to a register on its own
  • Veela does not use your documents to train its own or public models; the current model-provider retention and training terms are disclosed in the privacy policy
  • AI actions surfaced in chat are propose-only — a human click executes them, and anything consequential still runs through a governed resolution

Payments

  • Card details go directly to Stripe — they never touch Veela's servers
  • Subscriptions, invoices and cancellation are self-serve through Stripe's billing portal
  • Stripe Tax and invoicing are enabled only after Veela's GST registration and treatment are confirmed

Found something?

If you believe you've found a security issue in Veela, tell us before you tell anyone else — reports sent through the contact form are read with priority, and we'll keep you informed as we fix it.