Verifiable, not just trusted

Every safeguard here is something you can verify yourself — not a claim on a slide.

Keys never reach the browser

All AI calls route through a server-side proxy — your API keys and candidate data never touch client-side code.

Role-based permissions

Recruiters, finance, admins, and clients each see only what their role permits — enforced at the view level.

POPIA-aligned consent

Candidate consent is tracked per record, with right-to-erasure support built into the data model.

Document expiry tracking

Work visas, certifications, and contractor documents are flagged automatically before they lapse.

Data minimization

Client portals never expose your internal scoring — only the simplified match tier they need to decide.