Security Overview

Security Overview

This website and its interactive sandbox are hosted for demonstration purposes. We take no responsibility for the confidentiality or integrity of any logic or data you input into the sandbox environment.

TLS 1.3

All data in transit is encrypted using TLS 1.3, ensuring secure communication between your apps and our engine.

At-Rest Encryption

Sensitive data and model definitions are encrypted at rest using AES-256 for maximum safety.

SOC-Ready

Infrastructure hosted on major cloud providers with SOC 2 compliance and regular security audits.

Our Security Framework

Sumvela is built with a security-first mindset. We understand that financial formulas are the "secret sauce" of your business.

Sandbox Disclaimer

The interactive sandbox provided on this website is for evaluation and demonstration of the Sumvela engine only. It is a public environment. Do not submit real financial data, proprietary formulas, or sensitive company information into the sandbox. We do not guarantee the privacy, security, or persistence of any data or logic entered into the sandbox, and we assume no liability for its use.

Engine Security (Local/Private Deployments)

When you purchase and deploy the Sumvela engine within your own infrastructure, your financial formulas remain entirely within your control. Sumvela operates locally wherever you deploy it and does not phone home with your financial data or calculation logic.

Website Network Security

  • Encrypted Connections: Every API request to our demo services is forced over HTTPS.
  • DDoS Protection: Automated mitigation for volumetric attacks.

Bug Bounty & Reporting

We welcome security research. If you find a vulnerability, please report it directly to hi@costvela.com.

Need a Security Audit?

Enterprise customers can request our latest security posture reports and custom DPA documents.

Talk to Security Team →