Docs

Privacy & security

Security posture

TLS, dependency scanning, incident response.

  • TLS 1.3 across all endpoints, HSTS enforced.
  • CSP with strict-dynamic and no unsafe-inline.
  • Dependencies scanned on every commit with Snyk and Dependabot.
  • SOC 2 Type II audit in progress; Type I complete.
  • Bug bounty scope: full production surface, disclosed at /security.
Last updated July 27, 2026 Edit on GitHub