Security

It can touch your stuff. It can’t break it.

Assistants work on your machine with your accounts — data never leaves, destructive operations were never in scope, and anything irreversible asks you first.

Runs on your machine

Your machine, your accounts.

Mail, browser, computer actions — all of it happens locally with your existing logins. Data stays on your side and never gets uploaded to third-party clouds. What's yours stays yours.

  • Your machine and existing logins
  • No third-party cloud uploads
  • Mail, browser, and files covered
Your computerAssistants run here, with your existing loginsRuns locally
MailYour own inbox
BrowserYour signed-in tabs
FilesYour local folders
No third-party cloudsData stays with you
What’s yours stays yours.Assistants work on your machine with your accounts — nothing gets moved elsewhere.

No destructive actions

Does what it should. Never wrecks anything.

Reading, organizing, analyzing, producing — all fine. Deleting files, destructive shell commands, overwriting system settings — those were never in its capability set. Actions are confined to a safe list; no sandbox needed.

  • No deletes, no destructive commands
  • Actions confined to a safe list
  • Can't break your system, sandbox or not
Can do
✓ Read files & data ✓ Create, organize, digest ✓ Search & analyze ✓ Produce reports & drafts
Won’t do
Delete files ✕ Destructive shell commands ✕ Overwrite system settings ✕ Move data without consent
Actions are limited to a safe list — it can’t touch what it shouldn’t.It can work with your stuff but can’t break it: destructive operations were never in scope.

Tool permission tiers

Each tool gets the clearance you choose.

Safe tools auto-run, sensitive ones ask first, and switching a high-risk tool to auto requires your login password — each tool configured separately. You decide the clearance; no all-or-nothing.

  • Auto-run / ask-first, per tool
  • Configured separately, never all at once
  • Password required for high-risk auto
Tool permissionsEach tool gets its own clearance level
● Auto-run● Ask first
Web searchAsk firstAuto-run
File readingAsk firstAuto-run
GmailAsk firstAuto-run Password required to set auto
Browser controlAsk firstAuto-run Password required to set auto
You set the clearance.Every tool is configured separately — no all-or-nothing. High-risk tools need your password to go auto.

Hand your work over with confidence.

It can work with your stuff but can't break it — data stays local, risky actions ask first.

Currently in closed beta — an invite key is required to sign up