Account & security
Security & privacy
RLS isolation, encryption, audit, and Google Limited Use compliance.
- Multi-tenant isolation via *Row-Level Security* on every table: a workspace never sees another's data.
- AES-256 encryption of OAuth credentials.
- Audit log of sensitive access (including MCP calls).
- HTTP security headers, rate limiting, protection against prompt injection and SSRF.
- Google data used strictly for the features you enable — Google API Limited Use compliance, never for ads or resale.
You can export or delete all your data self-service from Settings → Data & privacy. Details on the *Privacy* and *Security* pages.
Need a guided setup?