Answers
Frequently asked questions
No inflated claims and no invented numbers — just how the platform behaves today.
Building
- What can I actually build?
- Front-end interfaces, multi-page apps, and full-stack projects with persistence and email sign-in through the ScodyX bridge or your own database. Complex domain logic still needs engineering review — treat generated code as a strong starting point.
- Which AI engines are available?
- The managed ScodyX Core engine plus GPT, Claude and Gemini families. ScodyX Advanced routes each task to the engine best suited to it and falls back to Core if a provider is unavailable mid-run.
- Do I own the code?
- Yes. You can export any project as a ZIP or push it to your own GitHub repository at any time. There is no proprietary runtime requirement to keep the exported app running.
- Can I connect my own database?
- Yes. A project can use the managed store or point at your own database. Connection settings are validated before they save, so a broken configuration is caught early.
Credits & billing
- How are credits charged?
- Credits are debited per build phase, not per message, and each debit is written to the ledger with a timestamp, request ID and remaining balance. Retries and engine fallbacks within one run are de-duplicated so they do not double-charge.
- What happens when credits run out?
- Generation stops and the workspace shows a top-up prompt. You can buy a credit pack or wait for your plan's renewal grant. Low-balance banners appear before you hit zero.
- Do credits expire?
- Unused plan credits carry forward for one month on monthly plans and two months on annual plans. Purchased credit packs are valid for twelve months. Expiry is visible in the ledger.
- Can I get a refund?
- Credits are non-refundable once purchased. Your statutory cancellation and consumer rights still apply and are described on the refund policy page. Billing is handled by our reseller, Paddle.
Accounts & teams
- Is there a free plan?
- Yes — a free workspace with starter credits and no card required. Paid plans add seats, credits, private projects and higher project limits.
- How do teams work?
- Each workspace has owner, admin and member roles with seat limits per plan. Members' projects are isolated from one another, and privileged actions are recorded in the audit log.
- Is my workspace separated from other customers?
- Yes. Separation is enforced by database access policies rather than application filtering alone, and automated isolation tests run against it.
Security & compliance
- Are you ISO 27001 or SOC 2 certified?
- No. We map our operating controls to ISO/IEC 27001 and 27701, SOC 2 criteria, GDPR, CCPA and WCAG 2.2, and we publish that register — but we hold no accredited certificate and no SOC 2 report, and we say so on the compliance page.
- Can I export or delete my data?
- Yes. The in-app data controls page lets you export a workspace snapshot and raise an export or deletion request that you can track to completion.
- How do I get support?
- Email support@ischolarx.com. Include the request ID shown on a failed run and we can trace it directly.
Still unsure?
Start free, or send us the specifics of what you need to ship.
What is evidenced, and what is only alignment
Evidenced items are produced by checks that run against the live system and can be exported. Alignment-only items describe how our practices map to a published standard — they are not certifications, audits or attestations by any third party.
- Tenant isolation
- Row-level security tests run against the live database and are reported in your workspace assurance page.
- Audit trail & credit ledger
- Every run, deploy and credit movement is recorded with a timestamp and request ID you can export.
- Encryption in transit
- HTTPS/TLS is enforced on all platform and generated-app endpoints, and probed on demand.
- ISO/IEC 27001 & 27701
- Our controls are mapped to these standards. We are not certified by an accredited body, and we do not claim to be.
- SOC 2 Trust Services Criteria
- Practices mapped to the criteria. No SOC 2 report has been issued for ScodyX.
- WCAG 2.2 AA
- We build to the guidelines and test key flows. No independent accessibility audit yet.
Evidenced
Evidenced
Evidenced
Alignment only
Alignment only
Alignment only
Full control register and framework mappings: Compliance & standards · Security overview