Security

VelaPrism Analytics is designed to minimize credential and data exposure.

Google sign-in

Google credentials are entered only on Google's own accounts.google.com pages. VelaPrism never asks users to type a Google password into velaprism.com.

Least privilege

The public version requests read-only Search Console and Google Analytics permissions. It exposes no public write tools.

Token handling

OAuth tokens are treated as secrets, are not rendered in tool output, and are not intended to appear in application logs.

Transport and browser protections

The service is delivered over HTTPS and uses restrictive browser security headers, including clickjacking, content-type, referrer, permissions, and content-security-policy protections on public pages.

Downloads and software

VelaPrism Analytics does not require browser extensions, executable downloads, software installers, or remote-access tools.