Snapshot 28121
Normalized text
Scripts and page chrome removed; this is what change detection compares.
Cookie Preferences We use cookies to enhance your experience, analyze site traffic, and for marketing purposes. By clicking "Accept All", you consent to our use of cookies. Read our Privacy Policy for more information. Security & Trust How we protect the data you entrust to JOBJIM. See also our Privacy Policy. Effective 13 August 2026. Last reviewed 13 August 2026. Architecture React single-page application backed by Supabase (managed Postgres + edge functions). Hosted in the US-West (Oregon) region. Sensitive operations run server-side only; the browser never receives service-role credentials. Controls TLS for all traffic in transit and encryption at rest. Row-Level Security is enforced on all 81 application tables, with role-based access checked server-side on every privileged operation. Time-based one-time-password (TOTP) multi-factor authentication is available to all accounts, including administrators, from account settings. Account passwords require a minimum of twelve characters including upper case, lower case, numeric and symbol characters. Partner API credentials are stored as salted hashes and never in plain text. Per-user rate limits on AI features, content moderation, centralized audit logging, PII-scrubbed error monitoring, and a self-service account-deletion flow. Data handling US-only data residency. We do not sell personal data, and we do not permit our AI providers to train their models on user data. Sub-processors We use certified providers — Supabase (infrastructure), Stripe (PCI-DSS Level 1 payments), OpenAI (AI), and Google (workspace and select AI services). A full, current sub-processor list is available on request. Compliance posture Built to NIST 800-53 Revision 5 aligned criteria. Ten information-security policies were adopted at version 1.0 on 9 July 2026 and are reviewed at least annually. A TX-RAMP Level 1 provisional assessment is in progress. SOC 2 is targeted as we scale. Report a vulnerability Found a security issue? Email security@jobjim.ai with details and steps to reproduce. We acknowledge reports promptly and coordinate disclosure. See our /.well-known/security.txt for machine-readable contact info. Security contact: security@jobjim.ai · Machine-readable: /.well-known/security.txt