← Back to Home

Security

Data protection and confidentiality at VIP CIRCL™

Core Security Principles

Confidentiality by Design

VIP CIRCL™ is built for elite executive search where discretion is non-negotiable. Candidate data never leaves your firm's control. No cross-firm data sharing. No external integrations without explicit authorization.

Invitation-Only Access

Access to VIP CIRCL™ is restricted to verified executive search professionals. Every firm undergoes verification before invitation approval. No self-service sign-ups.

Data Isolation

Firm data is logically isolated. Your candidates, your searches, your intelligence. Multi-tenant architecture with strict access controls ensures no firm can access another firm's data.

Encryption Standards

All data encrypted in transit (TLS 1.3) and at rest (AES-256). Database credentials and API keys managed via secure environment variables, never committed to code.

Minimal Data Collection

We collect only what's necessary for placement intelligence. No unnecessary tracking. No third-party analytics. No advertising pixels.

Infrastructure & Hosting

Vercel Platform

Application hosted on Vercel with enterprise-grade security, DDoS protection, and automatic HTTPS.

Neon Postgres

Database hosted on Neon with automatic backups, point-in-time recovery, and connection pooling for reliability.

Uptime & Availability

99.9% uptime SLA. Automated health checks. Real-time monitoring for performance and security incidents.

Security Roadmap

VIP CIRCL™ is in private beta. The following security enhancements are planned for production:

  • SOC 2 Type II compliance audit
  • Penetration testing by third-party security firm
  • Role-based access control (RBAC) for firm teams
  • Audit logging for all candidate data access
  • Two-factor authentication (2FA) for all users
  • Data retention and deletion policies
  • GDPR and CCPA compliance documentation

Questions about security? Contact us during onboarding.