Security

Built to be trusted

Your career data is sensitive. Here's exactly how we protect it.

Row-Level Security

Every row in our database is protected by Supabase Row-Level Security (RLS) policies. Your data is never accessible to other users — even if a query is misconfigured.

Encryption at Rest & in Transit

All data is encrypted at rest using AES-256 and in transit over TLS 1.3. We never store plaintext credentials. Authentication is handled exclusively via Google OAuth.

Minimal Data Collection

We collect only what's needed to deliver the service. We do not sell your data or share it with third parties for advertising. AI models process your data transiently and do not train on it.

Responsible Disclosure

Found a vulnerability? We operate a responsible disclosure programme. Contact arcusvision.app@gmail.com with a description and we'll respond within 48 hours.

Infrastructure

Database & Auth
Supabase (PostgreSQL, RLS enforced)
Hosting & Edge
Vercel — globally distributed CDN
AI Processing
OpenAI API — data processed transiently, not used for training
Monitoring
Real-time anomaly detection and uptime monitoring
Backups
Daily automated backups with point-in-time recovery

All Systems Operational

Real-time status at arcusvision.app

Report a vulnerability

arcusvision.app@gmail.com