This page is maintained by the PaceTalent.ai team to answer common security and privacy questions. It describes practices in place today — it is not a certification.
PaceTalent is invite-only. Sign-in is via Google OAuth — we don't store passwords. Sessions are scoped per user; every read and write is authorised on the server.
Candidate records, client data and conversations live in a per-account database scope. Row-level security enforces that one account's data is never visible to another. You own it and can export it on request.
Gmail, Google Calendar and Calendly are connected via OAuth with narrow scopes. Gmail is send-only when you draft outreach. Calendar sync is scoped to interviews. Calendly reads your scheduling URL only. Revoke at any time from your Google account.
PaceTalent runs on managed cloud hosting, a managed Postgres database and a hosted AI gateway. We use narrowly-scoped model providers via the gateway. Full subprocessor list available on request.
Email team@fortunize.io to request an export or full deletion of your account data. Requests are actioned within 14 days.
Report a security concern or a suspected vulnerability to team@fortunize.io. Please avoid public disclosure until we've had a chance to respond.
PaceTalent.ai does not currently hold an independent security certification. If your procurement process requires one, email team@fortunize.io and we'll share what we can.
PaceTalent.ai is rolling out to a small group of boutique search firms. If that sounds like you, we'd love to show you around.