Security
Assistants work on your machine with your accounts — data never leaves, destructive operations were never in scope, and anything irreversible asks you first.
Runs on your machine
Mail, browser, computer actions — all of it happens locally with your existing logins. Data stays on your side and never gets uploaded to third-party clouds. What's yours stays yours.
No destructive actions
Reading, organizing, analyzing, producing — all fine. Deleting files, destructive shell commands, overwriting system settings — those were never in its capability set. Actions are confined to a safe list; no sandbox needed.
Tool permission tiers
Safe tools auto-run, sensitive ones ask first, and switching a high-risk tool to auto requires your login password — each tool configured separately. You decide the clearance; no all-or-nothing.