Security at Skraib

Your writing is yours. We protect it with industry-standard encryption, strict access controls, and a zero-training policy.

Encryption in transit and at rest

All data is encrypted with TLS 1.3 in transit and AES-256 at rest. Your documents are protected from the moment they leave your device.

Secure infrastructure

Skraib runs on Convex's SOC 2 Type II certified infrastructure. Our backend is built with Rust (Tauri) and TypeScript with strict type safety and security reviews.

We do not train on your content

Your writing is never used to train AI models. We have contractual agreements with all AI providers prohibiting training on Skraib user data.

Regular audits and monitoring

We conduct automated vulnerability scans, dependency audits (npm audit), and monitor for anomalies. Security patches are deployed automatically.

Security checklist

  • TLS 1.3 for all connections
  • AES-256 encryption at rest
  • OAuth 2.0 / OIDC authentication via Clerk
  • Rate limiting on all API endpoints
  • Automated dependency auditing
  • Content Security Policy headers
  • Row-level security in database
  • No third-party tracking cookies

Report a vulnerability

Found a security issue? We take reports seriously and respond within 24 hours.

Contact Security Team