Non-critical notifications hold until quiet hours end. Critical notices still come through.
Enable quiet hours
From
Until
◌ Push delivery follows your device's OS permission (iOS / Android 13+). These are in-app preferences on top of that grant.
AI operations
Velora & model usage
Choose defaults and govern how AI acts in your workspace.
Usage this period
Your Velora capacity and consumption.
Requests today—
Included / day—
This month—
Agent runs (mo)—
Est. model cost (mo)—
Limit hits today—
Operating defaults
Apply to new conversations and agent runs.
Default mode
Model routingWhich model each task tier is served by.
Authority & controls
Guardrails for what Velora may do.
Require approval for writesDrafts never become approved work automatically.
Allow cross-desk context
Retain run evidence
Velora drafts and analyzes only. It never initiates payments, posts journals, files taxes, changes a cap table, or approves spend — those pass a human gate, and no token or agent can bypass it. Live per-desk usage shows on each desk's My Day.
Plan & capacity
Membership & billing
Access, billing, seats, and included workspace capabilities.
Active
Your plan
Manage billing to view renewal and payment details.
◇ Billed via Stripe on web · on iOS/Android, billing uses the App Store / Google Play with the same entitlement
✓ Stripe payouts activated. Referral earnings pay out automatically after each 60-day cycle closes.
Your referral link
Earn $1/month for life for every friend who activates a paid membership. Payouts run every 60 days via Stripe Express — trials and self-referrals don't count.
Earnings
Your referral performance.
Active referrals—
Earned to date$—
Next payout—
Status—
Stripe payouts
Referral earnings are paid via Stripe Express.
Payout accountActivate to receive automatic payouts.
Workspace data
Files & uploads
Every file you've uploaded across VS desks, in one place.
—
Documents—
Generated & media—
Storage used—
Total files—
Your files
Two views over everything you own. Documents are files you uploaded across desks; Generated & media are outputs VS created (renders, recordings, brand images, captures). Removing a file deletes it from storage; derived decisions and approved records stay intact.
Loading…
Continuity & provenance
Institutional memory
Control what VS remembers, why it is retained, and where it is used.
Knowledge records—
Decisions—
Evidence links—
Desks in memory—
Memory defaults
How approved work becomes reusable context.
Learn from approved work onlyNever learns from drafts unless explicitly added.
Cross-desk retrieval
Default retention
Governance
Memory stays attributable and reversible.
Source provenance
Required
Conflicting facts
Sensitive data detectionFlag PII and secrets in memory for review.
Removal requests
Request removal by person, project, source, desk, date range, or record type. VS runs a dependency review before deletion.
Scoped removalReviewed against dependencies before anything is erased.
Developer connections
API, MCP & BYO
Connect external systems and agents without surrendering workspace control.
Central minting, desk-scoped grants. A key can read and draft; it can never bypass a human approval gate or approve, pay, or file on its own. Connections carry credentials and configuration — never code that changes the app.
IN
Inbound APIExternal systems or agents read and write scoped desk records.
MCP
VS MCP serverExpose desks as tools to Claude, Codex, and other MCP clients — authed by a scoped API key.
↗
Outbound / bring your ownConnect model keys, agents, or external MCP servers for Velora to use.
Active API keys
Scoped, revocable credentials. The secret is shown once at creation, then stored only as a hash.
Loading…
Connected models & agents
Outbound connections Velora may use. Secrets are encrypted at rest and never shown again.
Loading…
Connection policy
Account-wide defaults for programmatic access.
Require scoped credentialsEvery key is desk-scoped by design.
Enforced
Approve external writesAPI and agent writes land as drafts behind a human gate.
Enforced
Auto-expire unused secrets
Allowed network rangesIP allow-listing for inbound keys. Any IP allowed.
Recent connection activity
Every call is attributable to a credential and desk.
Loading…
Trust center
Security & access
Identity, sessions, and workspace auditability.
Sign-in security
Protect your identity and high-impact actions.
Current password
New passwordAt least 8 characters.
Sign in with AppleLink your Apple ID for one-tap sign-in.
PasskeyAdd a device passkey to authorize exports, deletion, and other protected actions.
Two-factor authenticationAdd an authenticator app for a second sign-in step.
Sessions
Signed-in devices and recent access.
This deviceCurrent session
Current
Sign out everywhere
Recent sign-insYour latest sign-in devices and times. Sign out everywhere ends all sessions.
Loading…
Administrative safeguards
Recommended for owner accounts and institutional workspaces.
Step-up verification for exports and deletionRe-enter your password before exporting data or requesting deactivation.
Approval for role and scope changesRole, scope, and gate changes always pass a human approval.
Enforced
Audit log retention
Organization structure & accessRoles, scopes, and gates are established per organization — managed through your workspace and approval flow.
Enforced
Recent activity
Your latest account activity across VS, from the audit trail.
Loading…
Ownership & closure
Close account
Pause, transfer, or close access without destroying institutional knowledge.
Governed closure
VS separates personal access from organizational records, following the pattern enterprise platforms use.
1
ExportDownload your profile, preferences, activity summary, credentials inventory, and connections register as JSON.
2
Transfer ownershipRequired before an owner leaves an organization workspace.
3
Resolve dependenciesReview active keys, connections, files, and authored records before you close.
4
Deactivate accessReversible. Data and attribution stay intact; an admin can restore.
5
Close & anonymizePersonal identity anonymized where permitted after a 30-day recovery window.
Starts the in-app closure above, with a 30-day recovery window. After closure, your content and profile are permanently deleted within 90 days, including backups. Security logs are kept for up to 12 months. Billing and tax records live with our payment processor, Stripe, which retains them for as long as tax law requires. Inactive accounts receive email warnings and are deleted after 24 months.
Why there is no one-click "delete everything": a VS user may own decisions, approvals, financial models, client work, or compliance evidence. Closure preserves record integrity while allowing personal-data removal, scoped erasure, and lawful retention.
Create a scoped identity for an external system or agent. Gates still apply — a key can draft, never approve.
Name
Desk
Access
Expires
Copy your API key now
This is the only time the full key is shown. Store it securely — VS keeps only a hash.
Connection linkReady to paste into Claude: Settings → Connectors → Add custom connector.
Security reminders: this key — and the connection link, which contains it — works like a password for the desks in its scope. Never paste either into shared chats, documents, or code. Anything connected can read, and draft on, those desks until the key expires; approvals always stay with you. If a key may have been exposed, revoke it under Active API keys and the link stops working instantly. For extra protection, set short expiries and restrict usage to trusted networks under Configure.
Use Claude with VelorStrategy
Mint a scoped API key under Inbound API above, paste it below, and copy your personal connection link. In Claude, go to Settings → Connectors → Add custom connector and paste the link — Claude can then read and draft on the desks your key allows; approvals stay human.
Your API keyStarts with vs_. Shown once when you mint it.
Connection linkPaste this into Claude or any MCP client.
Add an outbound connection
Secrets are encrypted at rest and never displayed again after saving.
Type
Name
Provider / URL
Secret
Invite a teammate
They'll get an email invitation to your workspace.
Email
Name (optional)
Note (optional)
Allowed network ranges
Restrict inbound API/MCP keys to these IPs. One IPv4 address or CIDR per line (e.g. 203.0.113.4 or 10.0.0.0/16). Leave empty to allow any IP.
Submit a request
Details
Submitted to your workspace admins for review. VS never erases, transfers, or deactivates on its own — a human acts on it, and approvals and record integrity stay intact.
Dependency review
What's active on your account today. Resolve or reassign these before you close access.
Loading…
Set up two-factor authentication
Scan this code with an authenticator app (1Password, Google Authenticator, Authy), then enter the 6-digit code it shows.