Privacy Policy

Last Updated: March 2, 2026

Verosec is committed to protecting your privacy. This policy explains how we collect and use your information when you use our website and services.

What We Collect

From Our Website

When you contact us, we collect:

  • Your name and email address
  • Company name (optional)
  • Your message
  • Basic website usage data (IP address, browser type, pages visited)

From Our Platform (When You Sign Up)

  • Account information (email, encrypted password)
  • Your application URLs for testing
  • Security test results and reports

Your Credentials Are Safe

We do NOT store your application passwords or authentication credentials on our servers. All sensitive credentials are stored in a secure third-party vault that we cannot access.

How We Use Your Information

  • Provide penetration testing services
  • Respond to your inquiries and provide support
  • Send service updates and security notifications
  • Improve our services
  • Prevent fraud and maintain security

How We Protect Your Data

  • All data is encrypted in transit and at rest
  • Multi-tenant architecture keeps your data isolated from other customers
  • Access controls and authentication protect your account
  • Sensitive credentials stored in secure third-party vault
  • Regular security audits and monitoring

Data Sharing

We do not sell your personal information. Period.

We may share your information only in these situations:

  • Service providers: We use trusted third-party services to operate our platform (hosting, email delivery, credential storage)
  • Legal requirements: If required by law or to protect our rights
  • Business transfers: If our company is acquired, your data may transfer to the new owner

Your Rights

You have the right to:

  • Access your personal data
  • Correct inaccurate information
  • Request deletion of your data
  • Export your data
  • Opt-out of marketing communications

To exercise these rights, email us at privacy@verosec.com

How Long We Keep Your Data

  • Contact inquiries: 2 years
  • Account data: While your account is active, plus 90 days after deletion
  • Security reports: 3 years
  • Credentials: You control these - delete anytime

Cookies

We use essential cookies for basic website functionality and session management when you log in. We do not currently use tracking or advertising cookies.

International Users

Our services are hosted on secure infrastructure that may process data internationally. We comply with GDPR (Europe) and CCPA (California) requirements.

EU/California residents have additional rights including the right to lodge complaints with data protection authorities.

Children's Privacy

Our services are not intended for anyone under 18. We do not knowingly collect information from children.

Changes to This Policy

We may update this policy occasionally. We'll notify you of significant changes by email or website notice. Continued use of our services means you accept the updated policy.

Contact Us

Questions about this privacy policy or how we handle your data?