Security

Last updated: June 2026

Our Commitment

At Qualzv, security is foundational to everything we build. We are committed to protecting the personal data and privacy of our talent and business users across all regions we operate in.

Infrastructure Security

  • All data is encrypted in transit using TLS 1.3
  • Data at rest is encrypted using AES-256
  • Hosted on enterprise-grade cloud infrastructure with SOC 2 compliance
  • Regular automated backups with point-in-time recovery

Application Security

  • Secure authentication with hashed and salted passwords
  • Protection against OWASP Top 10 vulnerabilities
  • Input validation and output encoding to prevent injection attacks
  • Rate limiting and DDoS protection

Data Protection

  • Minimal data collection — we only collect what is necessary
  • Role-based access controls for internal teams
  • Regular access reviews and audit logging
  • Data retention policies aligned with legal requirements

Compliance

We are working towards compliance with:

  • GDPR — EU General Data Protection Regulation
  • CCPA — California Consumer Privacy Act
  • ISO 27001 — Information Security Management
  • SOC 2 — Service Organization Controls

Responsible Disclosure

If you discover a security vulnerability, please report it responsibly to security@qualzv.com. We appreciate your help in keeping our platform safe.