Security Overview
- Second Self AI never asks for your passwords.
- Connections use secure permission-based protocols where available.
- You control which avatars can access which data categories.
- External actions require approval by default.
- Sensitive data stays under your control.
- You can disconnect accounts, export data, and delete data at any time.
- Payments are processed by our PCI DSS Level 1 payment provider — we never see or store your card number.
- Every billing webhook is signature-verified before it can change your subscription state.
- Row-level security enforces that you can only ever read or write your own data.
