Security

Practical controls that protect your session and the strategy inside it.

Transport

All traffic between your browser and PromptifAI is served over HTTPS.

Storage

Session artifacts — brief, opportunities, commitment, snapshot, assets and feedback — are stored in a managed database with row-level security enabled. Only privileged server code touches your session data.

Access

Access to production systems is restricted to the PromptifAI team, using managed provider controls. We do not browse session content routinely.

Shared responsibility

PromptifAI operates the platform. You control what you paste into a brief. Please avoid pasting regulated personal data, customer PII, or secrets — the product is designed for strategic reasoning, not for storing sensitive records.

Reporting an issue

If you believe you have found a security issue, contact the PromptifAI team directly. We will respond and remediate.

This page is maintained by PromptifAI and describes current controls. It is not a certification or an audit report.