Security
- Structured managed-AI requests with explicit, minimized context.
- The managed service does not accept customer provider credentials. Local desktop credential settings are separate; no silent model fallback.
- Installation-bound rotating credentials in operating-system secure storage.
- Hash-bound local validation, approval, apply, and rollback.
- Published Linux applications have Sigstore signatures, checksums and downloadable verification material. Windows native AI remains disabled until its sandbox isolation checks pass.
- Prompt-free, chained operational receipts.
Report a vulnerability through the support route. Do not include active secrets or third-party confidential RTL in the initial report.