Security
Last updated 28 August 2026
Transport
Every page and API call is served over HTTPS. HTTP requests are redirected to HTTPS, and the site sends HTTP Strict Transport Security so browsers refuse to downgrade.
Account separation
Leads, ideal customer profiles, uploaded connections, notes and tasks are scoped to the owning account and enforced in the database with row-level security, not only in the interface. A signed-out request returns no records.
Authentication
Sign-in is handled by a managed authentication provider. We never store your password. Optional email and calendar integrations are connected by you, per account, and can be disconnected at any time.
6 Degrees never asks for your LinkedIn password, never signs in to LinkedIn, never scrapes LinkedIn and runs no LinkedIn automation. Network data enters the system only through a connections export file that you download from LinkedIn yourself and upload here. Nothing we do can affect or break an existing LinkedIn session or another tool connected to your LinkedIn account.
Reporting a vulnerability
Email shan@neuroforgegtm.com with steps to reproduce. Please give us a reasonable window to remediate before public disclosure. We will acknowledge reports and keep you updated. Please do not run automated scans against production or access data that is not yours.