Encrypted secrets
Connected API credentials and OAuth tokens are encrypted before they are stored.
Security
JobSurferAI is designed around private data, user-controlled integrations, and honest limits—especially while the product is in beta.
Connected API credentials and OAuth tokens are encrypted before they are stored.
Uploaded resumes are stored in private object storage rather than exposed as public assets.
Google connections request read-only Calendar and Gmail scopes for interview context.
Connection status and disconnect actions live in the same Integrations workspace.
How data flows
JobSurferAI stores the information you intentionally add or connect: tracked roles, application details, imported LinkedIn connections, search-agent settings, resumes, and integration credentials.
A job URL, Connections.csv, resume, API key, or Google authorization.
Data is stored for your workspace and used to power the workflow you requested.
Disconnect Google access or ask for beta data deletion at any time.
Current safeguards
We describe the product as it exists today. JobSurferAI does not currently claim SOC 2 certification or enterprise compliance programs.
Questions or reports
For privacy questions, security reports, or a beta data request, email hello@jobsurferai.com.
Your next role is closer
Bring the jobs you care about. JobSurferAI.com helps you organize the work, uncover warm paths, and show up prepared.