Protection while data travels
The privacy notice describes TLS protection for data in transit. TLS protects a connection between systems; it does not stop the receiving service from processing the information it receives.
Protection for connected-account credentials
- Connected email credentials are encrypted on the server using AES-256-GCM.
- Drive and accounting credential storage also use encrypted credential handling.
- Authorized server operations can access the credentials needed to perform the features you request. Encryption does not mean that credentials are unusable by the service.
Documents and credentials are different
Credential encryption is not a promise that every document, local cache, or downloaded copy has the same encryption treatment. Your selected storage service, device security, and processing workflow also matter.
This is not end-to-end encrypted document processing
AI features need readable document content or extracted information to perform their work. Do not treat AI Sortify as a system where only you can decrypt documents and the processing service cannot read them.
Protect your own devices
- Use a device screen lock and the security options provided by your operating system.
- Keep downloaded files and local output folders in locations appropriate for their contents.
- Avoid sharing passwords, provider tokens, or screenshots containing secrets.