Elaryx logo
  • Product
    • Overview
    • Campaigns
    • Content Creation
    • Visual Generation
    • Smart Scheduling
    • Analytics
    • Integrations
  • Features
    • Features Hub
    • Profile Intelligence
    • Strategy & Campaigns
    • AI Content Creation
    • Visual Generation
    • Smart Scheduling
    • Analytics & Growth
  • Solutions
    • Solutions Overview
    • For Founders & CEOs
    • For Indie Hackers
    • For Creators & Consultants
    • For Agencies & Teams
  • Resources
    • Blog
    • Guides
    • Templates
    • Help Center
  • Pricing
  • About Us
Log in Start Free Trial
Security & Trust

Security Policy

This Security Policy explains the safeguards Elaryx uses to protect accounts, OAuth tokens, user content, AI workflows, billing boundaries, and LinkedIn-connected data.

Effective dateAugust 15, 2026
Last updatedAugust 15, 2026
Jurisdiction focusIndia-focused SaaS policy

No LinkedIn passwords

LinkedIn passwords are never collected.

Protected OAuth tokens

OAuth tokens are protected and access-controlled.

Need-based access

Access is limited by role and operational need.

Report incidents

Security incidents can be reported to Elaryx.

On this page 01 Security Summary and Scope 02 Security Governance 03 Trust Controls 04 OAuth Token Security 05 Application, Infrastructure, and AI Workflow Security 06 Vulnerability Management, Backups, and Resilience 07 Vendor and Sub-Processor Security 08 User Security Responsibilities 09 Reporting Security Concerns and Limitations
On this page 1. Security Summary and Scope 2. Security Governance 3. Trust Controls 4. OAuth Token Security 5. Application, Infrastructure, and AI Workflow Security 6. Vulnerability Management, Backups, and Resilience 7. Vendor and Sub-Processor Security 8. User Security Responsibilities 9. Reporting Security Concerns and Limitations

1. Security Summary and Scope

This Security Policy explains the safeguards Elaryx uses to protect accounts, OAuth tokens, user content, AI workflows, billing boundaries, and LinkedIn-connected data.

It applies to the Elaryx web app, website, APIs, integrations, admin systems, databases, cloud infrastructure, support processes, and security operations. It does not cover third-party systems controlled by LinkedIn, payment gateways, AI providers, hosting providers, analytics tools, or the user's own device/network.

2. Security Governance

Security ownership sits with Elaryx/PINNAL SOFTWARE SOLUTIONS LLP leadership and engineering operations. Policies, access, and data-related changes are reviewed periodically according to operational risk and legal needs.

3. Trust Controls

Control area Practice
Authentication Password hashing or third-party auth where implemented, session controls, email verification where supported, and abuse protection where implemented.
OAuth token protection LinkedIn passwords are never requested or stored. Tokens are stored using secure storage practices such as encryption at rest or equivalent provider-managed safeguards.
Encryption HTTPS/TLS for data in transit, encryption at rest where supported, and secrets kept out of frontend code.
Access control Least privilege, role-based access, restricted admin access, access review, and removal when access is no longer needed.
Monitoring and logs Authentication, integration status, publishing/scheduling, error, and security event logs retained for reasonable support/security/legal periods.
Incident response Detect, assess, contain, investigate, remediate, and notify where required by law or operational need.

4. OAuth Token Security

Elaryx does not request or store LinkedIn passwords.

LinkedIn access relies on OAuth or approved authorisation. Token access is limited to authorised backend services and operational staff with need-to-know access. Tokens can be revoked or disconnected and are deleted or invalidated when no longer needed, subject to legal, security, and retention needs.

5. Application, Infrastructure, and AI Workflow Security

Elaryx uses secure coding practices, input validation, dependency updates, backups, monitoring, production/development separation where implemented, and error logging designed to avoid unnecessary secrets or personal data.

User prompts, brand data, drafts, generated outputs, and uploaded assets may be processed through authorised AI providers or subprocessors. Users should minimise sensitive data in prompts and avoid submitting passwords, API keys, government IDs, confidential client data, or regulated data unless necessary and authorised.

6. Vulnerability Management, Backups, and Resilience

Elaryx triages security issues by severity, applies security patches where needed, monitors errors and abuse signals, and may use dependency checks where available. No public bug bounty is offered unless separately announced.

Backups may be used for databases and content where implemented. Backup deletion may lag behind user deletion requests, and Elaryx does not guarantee that every draft, output, or asset can be recovered.

7. Vendor and Sub-Processor Security

Elaryx may use hosting, AI, payment, analytics, support, email, logging, and infrastructure providers. Vendors are selected based on operational need and safeguards, with contractual or data-processing terms where applicable. Cross-border processing may occur subject to applicable law.

8. User Security Responsibilities

  • Use strong passwords and protect your email account.
  • Do not share login credentials.
  • Review team access and remove users who no longer need access.
  • Disconnect integrations no longer needed.
  • Do not upload secrets, passwords, API keys, government IDs, or confidential data unless necessary and authorised.
  • Report suspicious activity promptly.

9. Reporting Security Concerns and Limitations

Report vulnerabilities or suspected account misuse to support@elaryx.ai. Include account email, affected URL, steps to reproduce, screenshots or logs without secrets, and impact details. Do not test accounts or data you do not own, perform destructive testing, spam, social engineering, or data exfiltration.

No system is perfectly secure. Elaryx does not claim SOC 2, ISO 27001, penetration-test certification, DPDP certification, or LinkedIn security approval unless verified evidence is published by Elaryx.

FAQs

Does Elaryx store my LinkedIn password?

No. Elaryx does not request or store LinkedIn passwords.

How are OAuth tokens protected?

Tokens are stored using secure storage practices such as encryption at rest or equivalent safeguards and are limited to authorised backend access.

Does Elaryx store payment card details?

Payment card details are handled by payment gateways. Elaryx should not store full card numbers or CVV unless a future implementation explicitly states otherwise.

Can I disconnect LinkedIn?

Yes. Disconnecting LinkedIn revokes connected functionality and may disable publishing, scheduling, analytics, and profile-intelligence features.

What should I do if I suspect account misuse?

Change your password or secure your auth provider, review team access, disconnect suspicious integrations, and contact support@elaryx.ai.

Does Elaryx have SOC 2 or ISO certification?

Elaryx does not publicly claim SOC 2, ISO 27001, DPDP certification, or LinkedIn security approval unless verified evidence is published.

How does Elaryx handle security incidents?

Elaryx detects, assesses, contains, investigates, remediates, and notifies where required by applicable law or operational need.

How do I report a vulnerability?

Email support@elaryx.ai with affected URL, steps to reproduce, impact, and screenshots or logs without secrets.

Related Legal Pages

Privacy Policy LinkedIn Data Usage Policy Terms of Service Refund and Cancellation Policy

Grievance and contact information

For legal, privacy, billing, LinkedIn data, or security requests, email support@elaryx.ai with your account email, issue details, invoice or subscription ID where relevant, and supporting evidence.

PINNAL SOFTWARE SOLUTIONS LLP

Elaryx logo

AI-powered LinkedIn growth platform for founders, creators and teams. Plan, create, schedule and grow with confidence.

Start your growth journey today

Build your LinkedIn presence with AI-powered strategy, content and automation.

Start Free Today
  • Overview
  • Campaigns
  • Content Creation
  • Visual Generation
  • Smart Scheduling
  • Analytics
  • Integrations
  • Pricing
  • Profile Intelligence
  • Strategy & Campaigns
  • AI Content Creation
  • Visual Generation
  • Smart Scheduling
  • Analytics & Growth
  • Solutions Overview
  • For Founders & CEOs
  • For Indie Hackers
  • For Creators & Consultants
  • For Agencies & Teams
  • Blog
  • Guides
  • Templates
  • Help Center
  • Help Center
  • Contact Support
  • Terms of Service
  • Privacy Policy
  • Refund / Cancellation Policy
  • LinkedIn Data Usage
  • Security Policy
  • About Elaryx
  • Contact Us
© 2026 Elaryx. All rights reserved. Elaryx is powered by Pinnal Software Solutions LLP