Scalign takes security seriously and encourages responsible disclosure from researchers, customers, and partners. If you believe you've found a security vulnerability, please report it to security@scalign.ai so we can investigate and address it promptly.
Your data stays yours.
Customers retain full ownership of their data in Scalign. We process customer data only to deliver the Scalign service and do not sell it or use it to train public or shared AI models. AI is used to support product functionality, with customer data handled in a controlled and isolated manner.
Customer data is primarily stored in the EU. Where required to deliver the service, Scalign may use carefully selected third-party processors.
Secure by default.
Scalign is built on secure cloud infrastructure and follows industry-standard security practices. Data is encrypted in transit and at rest using AES-256 encryption, and access to systems is monitored and restricted to authorized personnel.
Only intentional access.
Scalign uses role-based access controls to ensure customer data is only accessible to authorized users. Account administrators manage user access and permissions, helping teams collaborate while maintaining appropriate data boundaries.
Designed for transparent, responsible use.
Scalign supports compliant and transparent use of conversation data. Customers are responsible for ensuring appropriate consent for recording meetings, and Scalign does not manage or enforce consent on behalf of users.
Scalign maintains an internal incident response process to investigate and remediate security incidents. If a confirmed incident results in exposure of customer data or a material impact to service security or availability, affected customers will be notified as appropriate.