Promtitude employs industry-leading security measures to protect your recruitment data. We're committed to maintaining the highest standards of data protection and privacy.
TLS 1.3 in transit; AES-256 at rest (managed storage)
Per-tenant DB schema + service-identity based access
Customer data is never used to train shared foundation models
Role-based access with SSO/MFA support (beta: email + MFA)
Immutable app logs, 90-day hot / 365-day cold retention
Third-party vulnerability scans; annual pen-test planned
Dedicated database schema per tenant with row-level security. Service-identity based access control prevents cross-tenant access.
TLS 1.3 in transit, AES-256 at rest (managed storage). Key rotation policy enforced on platform level.
Customer data never used to train shared models. Subprocessors: Vercel, Railway, OpenAI (published list available).
Daily automated PostgreSQL backups (Railway) with point-in-time recovery. Regular restore tests ensure recovery readiness.
We follow recognized frameworks and publish our status transparently. Items below include a status badge and links to evidence.
We act as a data processor for customer data
Aligned with EU AI Act principles for transparency and fairness
Preparing for SOC 2 journey with policies and controls
Regular security assessments and monitoring
Transparency Commitment
During our beta phase, some certifications are in progress. We update this page quarterly with our latest compliance status and audit results. All evidence documents are available upon request under NDA.
We only collect and process data necessary for providing our services. Unnecessary data is not collected or is promptly deleted.
Your data is only used for the specific purposes you've consented to. We never sell or share your data with third parties.
Data is retained only as long as necessary. You can request deletion at any time, and we provide automated data retention policies.
Full data portability, access requests, and deletion rights. Export your data anytime in standard formats.
The following documents are available upon request to qualified customers:
Documents provided under mutual NDA for enterprise customers (some available for download)
Request Documentation →Q4 2025 (target)
Q1 2026 (target)
Q2 2026 (target)
Our security team is here to answer your questions and address any concerns.
Security Updates
We regularly update our security measures and promptly communicate any important changes that may affect your data. Subscribe to security updates through your account settings.
Our team can share control summaries and evidence under NDA.