Skip to content
Security

Designed for controlled settlement, auditability and operational trust.

Valtis combines authenticated access, protected deal roles, hashed evidence, activity logs and treasury workflows to make settlement activity visible and accountable.

revocable server-side sessionsEvidence hashingAudit trailUSDT on TRON

Security model

Access

Authenticated deal rooms

Participants can only access deals where they are assigned as Client / Payer, Provider / Receiver or admin.
Evidence

File hashing

Uploaded evidence is stored with a SHA-256 hash to support document integrity and audit trail checks.
Ledger

Settlement accounting

Releases, platform fees, payouts and treasury movements are tracked with structured ledger entries.
Invites

Link + passcode

Counterparty access uses an invite link and separate passcode so invite sharing can be operationally controlled.
Treasury

Controlled payout flow

Payouts move through preparation, review, broadcast and confirmation stages.
Production

Mainnet safety gates

Mainnet settings are blocked unless production flags, secrets, origins and network configuration pass startup safety checks.

What the controls cover

Security controls support the settlement workflow; they are not a guarantee against every loss.

Server-checked access

Sessions can be revoked. Deal access is checked by the server rather than granted by a browser-supplied user identifier.

Approval is not confirmation

A release decision, a submitted payment and a confirmed blockchain transaction are separate recorded stages. Uncertain transfers require review.

Platform-controlled settlement wallets

The current TRON workflow uses platform-controlled deposit and treasury wallets. It is not a self-custody wallet or a trustless smart-contract product.

Document integrity, not proof of delivery

A file hash supports checking whether recorded bytes changed. It does not establish that an invoice is genuine or that goods were delivered.

Report security concerns

For security reports, contact security@valtis.io. Do not include private keys, seed phrases or sensitive customer data in email.