Third Party Index

Snapshot 28121

Document
Security page
URL
https://www.jobjim.ai/security
Fetched
HTTP status
200
Content type
text/html; charset=utf-8
Fetch mode
browser
Size
44066 bytes
SHA-256 (raw)
fb834260ec021106086233541c44fc3e0aa31c3761e7e2ab3722c22cb0e8ddd7
SHA-256 (normalized text)
971399d10313a10a8412fd984a334b29d7c0fa7abc15354a6bcecbeba9183679

Normalized text

Scripts and page chrome removed; this is what change detection compares.

Cookie Preferences
We use cookies to enhance your experience, analyze site traffic, and for marketing purposes. By clicking "Accept All", you consent to our use of cookies. Read our Privacy Policy for more information.
Security & Trust
How we protect the data you entrust to JOBJIM. See also our Privacy Policy.
Effective 13 August 2026. Last reviewed 13 August 2026.
Architecture
React single-page application backed by Supabase (managed Postgres + edge functions). Hosted in the US-West (Oregon) region. Sensitive operations run server-side only; the browser never receives service-role credentials.
Controls
TLS for all traffic in transit and encryption at rest. Row-Level Security is enforced on all 81 application tables, with role-based access checked server-side on every privileged operation. Time-based one-time-password (TOTP) multi-factor authentication is available to all accounts, including administrators, from account settings. Account passwords require a minimum of twelve characters including upper case, lower case, numeric and symbol characters. Partner API credentials are stored as salted hashes and never in plain text. Per-user rate limits on AI features, content moderation, centralized audit logging, PII-scrubbed error monitoring, and a self-service account-deletion flow.
Data handling
US-only data residency. We do not sell personal data, and we do not permit our AI providers to train their models on user data.
Sub-processors
We use certified providers — Supabase (infrastructure), Stripe (PCI-DSS Level 1 payments), OpenAI (AI), and Google (workspace and select AI services). A full, current sub-processor list is available on request.
Compliance posture
Built to NIST 800-53 Revision 5 aligned criteria. Ten information-security policies were adopted at version 1.0 on 9 July 2026 and are reviewed at least annually. A TX-RAMP Level 1 provisional assessment is in progress. SOC 2 is targeted as we scale.
Report a vulnerability
Found a security issue? Email security@jobjim.ai with details and steps to reproduce. We acknowledge reports promptly and coordinate disclosure. See our /.well-known/security.txt for machine-readable contact info.
Security contact: security@jobjim.ai · Machine-readable: /.well-known/security.txt