Security at Proofwork
Your career data is personal. Here is what we do to protect it, and how to tell us if you find a problem.
Practices
- Every account's data is isolated with row-level access controls, enforced by the database itself.
- Sign-in is handled by a dedicated authentication service, with email/password and Google options.
- AI features run server-side and are constrained to the content of your own profile.
- We review reports of vulnerabilities and fix confirmed issues as a priority.
No online service can promise absolute security, and we will not claim otherwise. If you have questions about how your data is handled, see the Privacy Policy.
Report a vulnerability
If you believe you have found a security issue in Proofwork, we want to hear from you. Email officialmspmedia@gmail.com with:
- A description of the issue and the steps to reproduce it.
- The affected page or feature, and roughly when you observed it.
- Any proof-of-concept details that help us verify it quickly.
We review every report and will reply as soon as we can. Please give us a reasonable opportunity to investigate and fix the issue before sharing it publicly.
Responsible research guidelines
When testing, please: use only your own account and data; do not access, modify or delete other users' data; do not degrade or disrupt the service (no denial-of-service testing); and do not run automated scanners at disruptive volumes. Acting within these guidelines, we will not pursue legal action against good-faith security research reported to us.
Security contact: officialmspmedia@gmail.com