Our approach
We design around least privilege, human approval for consequential actions, scoped access, secure transport, abuse prevention and collection of only the information a feature needs.
Controls
Depending on the product and configuration, controls may include authentication, role or scope limits, audit events, credential revocation, approval gates, snapshots, rate limits and Cloudflare bot protection.
Your role
Use unique credentials, protect administrative access, review agent permissions, keep recovery methods current and remove access that is no longer needed. Do not place secrets in public chat fields.
Reporting a concern
Report a suspected vulnerability or security incident to [email protected]. Include the affected URL, impact and reproduction details; do not access data that is not yours.
No false guarantee
No internet service is perfectly secure. We improve controls as risks and products change, and we will make legally required notifications if a qualifying incident occurs.