Scoutly
FeaturesUse CasesEcosystemCompaniesTestimonialsPricingFAQ

Security

Last updated: June 13, 2026

Learn about the technical safeguards, encryption standards, and data protection practices that protect your career records on Scoutly.

On this page

1.Security Overview

At Scoutly, the confidentiality of your resume, career documents, and personal credentials is our highest priority. We have architected our platform with a defense-in-depth security approach, ensuring that your candidate data remains isolated, encrypted, and strictly under your control at all times.

2.Architecture & Data Isolation

Our platform enforces strong multi-tenant boundaries and granular access controls across all services:

  • Multi-Tenant Database Isolation: Candidate records, tailored resumes, and application trackers are isolated by unique user UUIDs in PostgreSQL with foreign key enforcement and row-level integrity checks.
  • Secure Token-Based Authentication: Sessions utilize industry-standard JWTs with short expiry, cryptographic signature verification, and Argon2id password hashing. Multi-factor authentication (TOTP and Email 2FA) is supported.
  • Stateless AI Processing: Prompt generation for resume tailoring is strictly decoupled. We never allow third-party model providers to retain or train on your private career history.

3.Data Protection & Encryption

We protect your data across all states through modern cryptographic standards:

  • Encryption in Transit: All HTTP traffic and API communications between your browser, our Chrome Extension, and the API require TLS 1.3 encryption.
  • Encryption at Rest: Generated documents, resumes, and database volumes are encrypted using industry-standard AES-256 encryption.
  • Payment Security: Payment transactions and subscription billing are processed directly through Stripe PCI-DSS Level 1 compliant infrastructure. We never store credit card numbers on our servers.

4.Responsible Disclosure

We appreciate the security research community. If you discover a vulnerability in Scoutly, please report it to us privately before making any public disclosure so we can review and remediate it promptly.

Please send vulnerability reports to security@scoutly.in. We respond to all verified security reports within 48 hours.

Contact Us

If you have any questions, concerns, or feedback, feel free to reach out to us. We are always here to help.

contact@scoutly.in

On this page

Scoutly

One profile. Tailored resumes, cover letters, and application answers generated per job. The modern job seeker's AI platform.

GitHubTwitterLinkedIn

Product

  • Features
  • Use Cases
  • Ecosystem
  • Testimonials
  • Pricing
  • FAQ

Platform

  • Blogs
  • Changelog
  • Roadmap
  • Documentation
  • Community
  • System Status

Company

  • About us
  • Security
  • Subprocessors
  • Brand Kit
  • Acknowledgement
  • Support

Legal

  • Terms of Service
  • Privacy Policy
  • Cookie Policy
  • Acceptable Use
  • Data Processing
  • Licensing

© 2026 Scoutly. All rights reserved.

Built with ❤️ by Ranit Manik

All systems operational