That deserves a straight answer about where your data goes, what an agent can touch, and what we have not built yet.
Your agents, chats, memories and documents are stored in a managed Postgres database with per-row access control, hosted on Azure.
The tokens that let an agent act on your behalf are encrypted before they are stored, with a key the database never sees.
Connecting a tool and authorising an agent to use it are two separate decisions. Connecting Slack does not give every agent Slack.
Running an agent means sending its context to a language model. We run one, and we run it ourselves.
Enough to run the service and show you what your agents did, and no more.
Your data stays until you remove it.
Certifications get claimed loosely in this category. Here is where we actually stand.
Security reports are read the day they arrive. Review our Privacy Policy and Terms for the legal detail.