VelaPrism Analytics is designed to minimize credential and data exposure.
Google credentials are entered only on Google's own accounts.google.com pages. VelaPrism never asks users to type a Google password into velaprism.com.
The public version requests read-only Search Console and Google Analytics permissions. It exposes no public write tools.
OAuth tokens are treated as secrets, are not rendered in tool output, and are not intended to appear in application logs.
The service is delivered over HTTPS and uses restrictive browser security headers, including clickjacking, content-type, referrer, permissions, and content-security-policy protections on public pages.
VelaPrism Analytics does not require browser extensions, executable downloads, software installers, or remote-access tools.