How we protect your data, proposals, and company information.
Last updated: May 1, 2026
SourceGent is built on enterprise-grade cloud infrastructure designed for reliability and security:
Every piece of data in SourceGent is scoped to the authenticated user and their company. We enforce this at the database level using Supabase Row Level Security (RLS), not just in application code.
The optional review portal generates cryptographically random 48-character share tokens. Shared links expire after 90 days by default. Tokens are rate-limited to prevent brute-force enumeration. You can revoke any share link at any time from your account settings.
We use Anthropic's Claude API to analyze documents and generate proposal content. We take the following measures when handling AI processing:
Proposal section saves use timestamp-based optimistic locking. If two users (or two tabs) attempt to save the same section simultaneously, the second write is rejected with a conflict warning rather than silently overwriting work.
In the event of a data breach that affects your personal information, we will notify affected users in accordance with applicable laws, including providing details about what was affected and steps taken to address the issue.
We welcome security researchers and users to report potential vulnerabilities. If you believe you have found a security issue in SourceGent, please report it to us before disclosing it publicly.
Report a vulnerability
Email us at security@sourcegent.io with a description of the issue, steps to reproduce, and potential impact. We will acknowledge your report within 48 hours and keep you updated as we investigate.
Please do not access or modify other users' data during testing, use automated scanners against production systems, or publicly disclose the issue before we have had a reasonable opportunity to address it.
We do not currently offer a bug bounty program, but we do acknowledge responsible disclosures and take every report seriously.
Have security questions that aren't answered here? Contact us: