WorkTwins Security
1. Security Philosophy
WorkTwins is local-first, cloud-assisted where necessary, and designed to minimize raw context exposure.
2. Data Minimization
WorkTwins aims to use the minimum data needed for:
- WorkFootPrint creation;
- compatibility matching;
- collaboration;
- communication;
- security;
- service reliability;
- billing.
3. Local Processing
The Subjective Client processes work-context signals locally whenever possible, including non-work filtering, sensitive-data filtering, and WorkFootPrint preparation.
4. User Review
Before selected WorkFootPrint information is used for cloud-assisted matching, users may review, redact, exclude, delete, or adjust granularity.
5. Encryption
WorkTwins uses:
- encryption in transit where applicable;
- encryption at rest for cloud-stored data where applicable;
- local encryption where supported by the operating system and app configuration.
6. Access Controls
WorkTwins uses role-based access controls for internal systems and company workspaces where applicable.
7. Raw Evidence Protection
Raw screenshots, private files, source code, passwords, private messages, and sensitive content are not shared with other users or companies by default.
8. Payment Security
WorkTwins uses payment processors for card handling. WorkTwins should not store full card numbers.
9. Incident Response
Security contact: [email protected]
10. Responsible Disclosure
Security researchers may report vulnerabilities to [email protected].