Security

Sessions and sign-out, the list of things BROVi Scan never asks for, and how to report a concern.

Edit suggestion

Sessions and signing out #

Signing in creates a server-managed session tied to secure cookies; your password is never stored in readable form. Sign out from the header (or the account menu in the workspace sidebar) to end the session on that browser. If you use a shared or public computer, sign out when you finish.

Password reset works by email: request a reset link from the sign-in page, set a new password, and sign in again. Google sign-in uses a server-side authorization flow; BROVi Scan never sees your Google password.

What BROVi Scan never asks for #

BROVi Scan does not ask you to upload or enter:

  • passwords or private access codes
  • one-time codes (OTPs)
  • CVV codes or full card numbers
  • online banking login details

The financial check works entirely from summary figures you type yourself. Anything that claims to be BROVi Scan and asks for the items above is not BROVi Scan; do not provide them, and report it.

Warning

Keep secrets out of chat as well. The assistant does not need account numbers, document scans of ID pages, or codes of any kind to help you, and sensitive document review belongs in the scan modules, not in a chat message.

Reporting a concern #

If you spot a security problem, suspected phishing, or anything that looks wrong with your account, contact scelta.infinity@gmail.com. Include what you saw and when; screenshots help. Please do not include passwords or codes in the report itself.