Security

Delivery proof, not developer surveillance.

Scopeworth handles delivery metadata such as tickets, pull requests, calendar events, and AI work signals. We are deliberate about what we collect and what stays outside the product.

Trust beats fake precision

Every report carries a confidence score.

If the data is messy, Scopeworth says so and shows what to fix.

app.scopeworth.app/farhaven/confidence
Report confidence

Scopeworth tells you when the data is messy

Composite score across 5 data quality signals
0%
Medium confidence
PRs linked to Jira tickets
Strong traceability. PR titles include ticket IDs.
0%Healthy
Tickets mapped to client/project
36% of tickets miss explicit project labels.
0%Improve
Meetings tagged to project
Weak signal. Improve calendar tagging next month.
0%Weak
Rate card precision
Role based estimate.
0%Improve
AI assisted work tagging
Partial explicit tagging.
0%Improve
Data sources

Read only access to the tools you already use.

app.scopeworth.app/farhaven/sources
Data sources

Connected tools

Read only, metadata first ingestion across the tools delivery teams already use
Jira
Issue tracker
Connected
1,248 issues synced
GitHub
Source control
Connected
372 PRs synced
Google Calendar
Coordination
Connected
96 meetings scanned
Cursor
AI assisted dev
Connected
AI activity detected
GitHub Copilot
AI assisted dev
Connected
AI activity detected
GitLab
Source control
Available
Add to expand coverage
Metadata first. Ticket status, PR timing, review cycles, release events, meeting metadata, and AI tags. Never source code, keystrokes, screens, or individual rankings.
Our security principles

Six commitments we hold the product to.

01

Collect only what is needed

Scopeworth reads just enough delivery signal to produce a useful report.

02

Make assumptions visible

Where data is incomplete, the report shows confidence and inferred values. No quiet guesses dressed as facts.

03

Prefer metadata over source content

Where a question can be answered with metadata (titles, statuses, timing), we avoid reading source code content.

04

Use least privilege integrations

OAuth scopes are kept narrow. Read only by default, write access only when required.

05

Keep client and project data separated

Reporting boundaries follow the way agencies actually bill: by client, project, and engagement.

06

Avoid individual surveillance metrics

Scopeworth produces project, client, and team reporting. It does not produce individual rankings or scoring.

Surveillance boundary

What Scopeworth does NOT collect by default.

Scopeworth focuses on client, project, and team delivery proof. It is not designed to rank engineers or create review leaderboards.

Does not collect

No keystrokes or screen recordings

Scopeworth never records keystrokes, screens, webcams, or microphones. These are not delivery signals.

Does not collect

No individual productivity rankings

Reports are project, client, and team level. There are no individual scorecards, leaderboards, or review outputs.

Does not collect

No private message content by default

Where messaging tools are connected, Scopeworth uses coordination metadata, not message bodies, unless a customer opts in.

Does not collect

No source code content by default

PR metadata, review timing, and merge activity feed reports. File contents stay outside by default.

Does not collect

No time on task surveillance

No background timers, mouse movement tracking, or active hours measurement. Cost is modeled from delivery signal, not user activity.

Does not collect

No HRIS or payroll integration

Scopeworth uses role based cost bands by default. Exact salaries are never required, and HRIS systems are never connected.

Data minimization

Read what's needed for the report.

Reports are built from delivery metadata: tickets, pull requests, releases, calendar events, and AI tool signals. Where a question can be answered with metadata, we don't pull file contents.

Least privilege access

Narrow scopes, read only by default.

Integration scopes are kept as narrow as the provider allows. Read only is the default. Any write access is opt in.

Sensitive delivery data

Treat client and project data with care.

Delivery data carries client confidentiality. We separate data along the boundaries that agencies actually bill on, and we don't combine it across customers.

Role based access, planned

Reports visible to the right people.

As the product matures, role based access will let agencies expose specific reports without sharing everything.

Compliance roadmap

Enterprise controls, in the order we ship them.

These are planned, not yet generally available. We sequence them by what design partners actually ask for first.

  1. On design-partner requestSSO / SAML and role-based access to specific reports.
  2. NextAudit logs for sensitive actions and configurable data retention.
  3. As we scaleData residency options and tighter per-integration permission scopes.
  4. After formal auditSOC 2 readiness — published here once complete.

We don’t claim certifications we don’t hold. As we go through formal audits, we’ll publish the results here.

Reporting security concerns

Found something? Let us know.

If you believe you’ve found a security issue with the website or product, please reach out via the contact page with details and reproduction steps. We’ll respond within one business day and work with you on resolution.

Ready when you are

Have specific security requirements?

Tell us about your environment and we'll walk through what we have today and what we're shipping next.

Discuss security requirements