Authentication
Server-side sessions protect browser routes. Mutations use CSRF protection, and accounts or organizations can be suspended.
Security
This page describes implemented product boundaries and operating practices without claiming certifications or guarantees that have not been documented.
Server-side sessions protect browser routes. Mutations use CSRF protection, and accounts or organizations can be suspended.
Private queries are scoped by owner and organization. MCP uses one validated active organization with server-side membership checks.
Only selected context is sent. Provider keys remain server-side; models do not receive database credentials.
Important proposals remain reviewable. Sensitive Operator approvals are scoped to a single owner and run.
Restricted capabilities
Data operations
ReasonTrail preserves failed runs, verification evidence, approvals, and audit history for diagnosis.