Security & data handling

Shared work. Defined access.

Understand how access is scoped in Velakron and the current limits on the data the environment can support.

Scoped access

Organization, relationship, and role determine access to shared work.

How access works

Current data limits

No classified information, ITAR/export-controlled technical data, or CUI in the current environment.

Data restrictions

Security questions

Discuss procurement requirements or report a concern before sharing technical material.

info@velakron.com

Organization, relationship, and role

Access to operational work is checked against the signed-in person’s organization, active membership, role, and relevant company relationship. A connection between an OEM and supplier does not make that work available to unrelated companies.

Administrators manage their own team’s access. Velakron platform support access is subject to authorization and audit controls; it is not an unrestricted public view of customer work.

Private files and authorized access

Part files and supporting attachments use private storage with authorization checks. Access to a record does not create a public file link. Temporary download links are issued through the application’s authorized workflows.

Account sessions and permissions are part of the product’s access controls. Protect your credentials, use an appropriately managed device, and remove access when people no longer need it.

Confidentiality is part of participation

Newly activated accounts accept versioned Platform Confidentiality Terms. Organizations retain the rights in their materials, and permitted use is tied to authorized work.

An OEM and supplier can also store an externally signed NDA for their relationship. That optional agreement adds its own terms; its presence or expiration is not the mechanism that grants platform access.

Read the Platform Confidentiality Terms

The current data boundary

The current environment is not approved for classified information, ITAR or other export-controlled technical data, or Controlled Unclassified Information (CUI). Do not upload or send those materials through the site, product, or application form.

An organization operating in aerospace or defense may have different categories of information. Selecting an industry or acknowledging a form notice does not approve data access. Discuss the requirement category with us before onboarding.

Acceptable use and current restrictions

Evaluate the actual requirements

If your procurement process requires a particular security certification, contractual control, data location, or assurance report, contact us before relying on the service for that use. This page does not claim SOC 2, ISO 27001, ITAR approval, or an independent certification.

File validation and private access do not amount to a guarantee that every upload has been malware scanned. The current prototype’s scanning limitations must be evaluated as part of onboarding.

Discuss your requirements

Questions or suspected incidents

Contact info@velakron.com to report a security concern or request the appropriate security contact. Describe the issue and how to reach you; do not email credentials, controlled technical files, or unnecessary confidential details.

Take the next step

Spend less time asking where your parts are.

Join the OEMs and suppliers shaping a clearer way to work together. Apply for a limited Early Access cohort.