Security Policy

Last updated: July 26, 2026

1. Data security

Connections between the website, the app and our services use HTTPS/TLS to protect data in transit. We apply reasonable technical and organizational controls according to the type of information and risk, without claiming that any system can be completely invulnerable.

2. Authentication

ScanCal uses authentication and session mechanisms to limit access to each account. Credentials and sign-in providers are handled by the components configured for the service; you should never share your codes or passwords.

3. Access and control

We limit operational access to the people and providers that need information to deliver, maintain or protect the service. We may use technical logs to detect errors, investigate incidents and prevent misuse.

4. Reporting vulnerabilities

If you discover a security vulnerability, please report it immediately to our security team. We value the security of our users and take every report seriously.

5. Security updates

We review dependencies, configurations and controls as the product evolves, and apply updates according to risk and the availability of fixes.

Our commitment to security

Your security is our priority. We are committed to:

  • Reducing risks with proportionate measures
  • Explaining our practices without absolute promises
  • Reviewing controls as the service evolves