Security
Tenant data is protected by authenticated row-level policies, server-only credentials and append-only audit events.
AI output is schema-validated and grounded in retained evidence. Web and email content is treated as untrusted input.
Outbound delivery is fail-closed behind server, workspace, suppression, identity and final-confirmation controls.