diff --git a/index.php b/index.php
index f081df1..2125730 100644
--- a/index.php
+++ b/index.php
@@ -323,7 +323,7 @@
See how it works →
-
+
Security →
@@ -534,12 +534,8 @@
-
-
Security
Built to be trusted — not overclaimed.
FinMox is designed to control hiring execution while producing defensible records. We take data handling, access control, and documentation seriously — even in early access.
We believe trust is earned through clear boundaries, not marketing claims.
-
Security by design, not bolted on.
FinMox does not make autonomous hiring decisions, store unnecessary data, or replace systems of record. This intentionally limits risk.
✔ Humans define intent and make final decisions
✔ Systems enforce execution steps and guardrails
✔ Documentation is created automatically from actions
✔ Data access is limited to what is operationally required
-
Data handling
✔ Data encrypted in transit
✔ Minimal data retention by default
✔ No resale or training on customer data
✔ Clear separation of customer workspaces
Access controls
✔ Role-based access permissions
✔ Explicit user attribution on actions
✔ Restricted administrative access
✔ Audit visibility into decision activity
-
Automatic documentation without added admin work.
FinMox creates a decision trail as a byproduct of execution — not as an extra task imposed on teams.
What’s recorded
Role criteria versions, evaluator inputs, stage changes, overrides, timestamps, and decision outcomes.
What’s avoided
No manual logs, no retroactive justification, no “recreate the story later.”
Why it matters
Creates defensibility for audits, disputes, and internal review.
-
Compliance posture
FinMox is not currently SOC 2 certified. We do not claim certifications we have not completed.
However, our architecture and operating procedures are designed with SOC 2 readiness in mind.
✔ Defined access controls
✔ Documented operational processes
✔ Incident response planning
✔ Vendor and data flow awareness
What FinMox does not do
• We do not make autonomous hiring decisions
• We do not replace payroll, HRIS, or benefits systems
• We do not claim bias elimination
• We do not sell or repurpose customer data
• We do not act outside defined guardrails
Trust is built through execution.
FinMox earns confidence by controlling how hiring decisions happen — and recording them automatically.