Skip to content
Connect by Vinpro

Legal

Security

Last updated: 5 June 2026

We take the security of your data seriously. This overview describes our current practices and is being formalised alongside our SOC 2 and ISO/IEC 27001 program; we'll update it as controls are certified.

Encryption in transit

All traffic to the website and our APIs is served over HTTPS/TLS.

Access control

Access to the platform uses token-based authentication with role-based permissions, on a least-privilege basis. Our public website assistant has no access to any customer or employee data.

AI processing

The Neo assistant uses Google (Gemini) and Groq as AI sub-processors (see Sub-processors). The website assistant answers general questions only and is not given personal or account data.

Infrastructure & data storage

Our services run on managed infrastructure with network controls and regular database backups. Encryption at rest, key management and infrastructure hardening are being rolled out as part of our certification program.

Monitoring & resilience

We monitor our services and maintain backups to support recovery. Logging and alerting are being expanded under our security program.

Certifications

SOC 2 and ISO/IEC 27001 are in progress. Once available, reports and certificates will be made available to customers under NDA.

Responsible disclosure

Found a vulnerability? Please report it to info@vinproconnect.com and allow us reasonable time to remediate before public disclosure.