Security

Private knowledge needs careful boundaries.

Security is part of the product architecture. A complete public security and disclosure program will be published before release.

OAuth sign-in

The hosted MVP uses Google or GitHub OAuth rather than an application password flow.

Private libraries

Learning libraries are account-scoped and are not published as public pages by the capture flow.

Read-only Agent Access

Current agent grants are intentionally bounded and read-only.

Security documentation pending

Detailed security documentation is not public yet.

Deployment architecture, vulnerability reporting, incident contacts, certifications, and availability commitments are not claimed on this placeholder page. They can be added here after review and approval.

No certification or audit status is implied.