Trust and legal

Security overview

A public overview of the controls used to protect SkilaAI access and integrations.

Updated July 24, 2026

Platform controls

SkilaAI uses role based authorization, request validation, rate controls, protected health and metrics endpoints, security headers, audit records, and production secret validation.

Integration controls

Provider credentials are encrypted, OAuth scopes are explicit, webhook destinations are validated, deliveries are signed, and privileged changes are audited.

Responsible reporting

Report suspected vulnerabilities to security@skilaai.com. Do not access data that is not yours, disrupt service, or publish sensitive details before coordinated review.