Scopeworth handles delivery metadata such as tickets, pull requests, calendar events, and AI work signals. We are deliberate about what we collect and what stays outside the product.
If the data is messy, Scopeworth says so and shows what to fix.
Scopeworth reads just enough delivery signal to produce a useful report.
Where data is incomplete, the report shows confidence and inferred values. No quiet guesses dressed as facts.
Where a question can be answered with metadata (titles, statuses, timing), we avoid reading source code content.
OAuth scopes are kept narrow. Read only by default, write access only when required.
Reporting boundaries follow the way agencies actually bill: by client, project, and engagement.
Scopeworth produces project, client, and team reporting. It does not produce individual rankings or scoring.
Scopeworth focuses on client, project, and team delivery proof. It is not designed to rank engineers or create review leaderboards.
Scopeworth never records keystrokes, screens, webcams, or microphones. These are not delivery signals.
Reports are project, client, and team level. There are no individual scorecards, leaderboards, or review outputs.
Where messaging tools are connected, Scopeworth uses coordination metadata, not message bodies, unless a customer opts in.
PR metadata, review timing, and merge activity feed reports. File contents stay outside by default.
No background timers, mouse movement tracking, or active hours measurement. Cost is modeled from delivery signal, not user activity.
Scopeworth uses role based cost bands by default. Exact salaries are never required, and HRIS systems are never connected.
Reports are built from delivery metadata: tickets, pull requests, releases, calendar events, and AI tool signals. Where a question can be answered with metadata, we don't pull file contents.
Integration scopes are kept as narrow as the provider allows. Read only is the default. Any write access is opt in.
Delivery data carries client confidentiality. We separate data along the boundaries that agencies actually bill on, and we don't combine it across customers.
As the product matures, role based access will let agencies expose specific reports without sharing everything.
These are planned, not yet generally available. We sequence them by what design partners actually ask for first.
We don’t claim certifications we don’t hold. As we go through formal audits, we’ll publish the results here.
If you believe you’ve found a security issue with the website or product, please reach out via the contact page with details and reproduction steps. We’ll respond within one business day and work with you on resolution.
Tell us about your environment and we'll walk through what we have today and what we're shipping next.