Security Overview

  • Second Self AI never asks for your passwords.
  • Connections use secure permission-based protocols where available.
  • You control which avatars can access which data categories.
  • External actions require approval by default.
  • Sensitive data stays under your control.
  • You can disconnect accounts, export data, and delete data at any time.
  • Payments are processed by our PCI DSS Level 1 payment provider — we never see or store your card number.
  • Every billing webhook is signature-verified before it can change your subscription state.
  • Row-level security enforces that you can only ever read or write your own data.