Security & Trust
Trust Center
1. Our commitment
Your resume and job-search data are sensitive. We design GoGrabJob with privacy and security as core requirements — not afterthoughts. This Trust Center summarises our controls; detailed legal terms are in our Privacy Policy and related documents.
2. Security practices
Encryption
TLS 1.2+ for data in transit. Encrypted storage for resumes and account data at rest.
Access control
Role-based access to production systems. Multi-factor authentication for internal admin access.
Monitoring
Logging, anomaly detection, and regular review of access patterns.
Secure development
Code review, dependency scanning, and environment separation (dev / staging / production).
3. Infrastructure partners
| Service | Provider | Purpose |
|---|---|---|
| Database & auth | Supabase | Account data, application storage |
| Hosting & CDN | Netlify / cloud edge | Website delivery |
| AI inference | OpenAI, Anthropic, Groq | Resume & JD processing |
| Payments | Cashfree, Razorpay | Subscription billing |
| Transactional email provider | Account & billing notices |
4. Data handling principles
- Data minimisation — we collect what the product needs, not more.
- Purpose limitation — resume content is used to deliver your requested outputs.
- No sale of personal data to recruiters or data brokers.
- User control — export and delete from account Settings.
- Incident response — documented process for detection, containment, and notification.
5. Compliance alignment
We align our privacy programme with GDPR (EEA/UK), India's DPDP Act 2023, and applicable consumer protection rules. We do not claim certifications we have not earned; when we complete formal audits (e.g. SOC 2), we will publish them here.
6. Responsible AI
- AI outputs are generated for your review — not auto-submitted to employers.
- We scope model usage to your session and service delivery.
- We monitor for abuse and harmful use of the platform.
8. Incident response
- Detection via monitoring and user reports.
- Containment and root-cause analysis by our engineering team.
- Notification to users and regulators when legally required.
- Post-incident review and remediation.
9. Report a concern
Security vulnerability or data concern: support@gograbjob.com
We appreciate responsible disclosure and will investigate good-faith reports promptly.