Identity and access
Vuteach uses managed authentication and server-side session checks. Workspace roles limit access to creator, learner, billing, settings, and platform-administration actions.
Academy and course operations are scoped to the active workspace, and learner-only resources require the relevant account or course entitlement.
Platform and payment boundaries
Sensitive service credentials are kept on the server. Browser-visible configuration is limited to values designed for public clients.
Payments are handled by Stripe-hosted services and connected-account flows. Vuteach does not need to store full payment-card numbers.
Monitoring and abuse prevention
The platform records operational and security events, applies request limits to sensitive routes, validates uploads and structured input, and uses monitoring to investigate failures.
No internet service can eliminate every risk. Vuteach reviews controls as the product changes and prioritises issues that could affect account, tenant, payment, or learner boundaries.
Your responsibilities and reporting
Use a unique password, protect access to your email account, review workspace membership, and remove access that is no longer required.
If you believe you found a security issue, use the contact page and provide enough detail to reproduce it. Do not access, alter, or disclose data that does not belong to you.