đź”’
Security
How we protect your data
Transport Security HTTPS
All traffic between your browser and Scriptorai is encrypted in transit using HTTPS (TLS).
- Encrypted connections help prevent interception and tampering.
- We recommend keeping your browser up to date.
Tip: If you ever see a browser warning about your connection, don’t enter credentials—contact us.
Account Security Passwords
We never store passwords in plain text. Passwords are stored using secure one-way hashing.
- Strong hashing makes stolen password databases far less useful to attackers.
- Use a unique password for Scriptorai (a password manager helps).
Session Security Cookies
When you sign in, we use secure session cookies to keep you authenticated.
- Cookies should be sent only over HTTPS.
- We avoid exposing session data to client-side scripts.
- Signing out invalidates your session.
Text Processing AI
The text you submit is processed to generate punctuation and capitalization improvements.
- We do not sell your personal data.
- We aim to minimize stored data and access.
- We use monitoring and rate limits to reduce abuse.
If you’d like a stricter “no logging” mode or enterprise guarantees, contact us.
Infrastructure Hardening
We use standard security practices to reduce risk and improve reliability.
- Regular updates and patching.
- Firewall rules and network restrictions.
- Service monitoring and error alerting.
- Abuse prevention (rate limiting and basic bot controls).
Responsible Disclosure Report
If you find a vulnerability, we want to hear about it.
Security contact
contact@scriptorai.co
Please include steps to reproduce, screenshots (if relevant), and the affected URL(s).
We’ll confirm receipt and work to address valid issues quickly.