SECURITY & PRIVACY

Security is a product boundary, not an add-on.

Every layer follows least privilege, fail-closed behavior and auditable operations.

BUILT FOR CONTROL

Clear controls at every layer

01

Tenant RLS

The database denies cross-tenant access even when application filters are missing.

02

Secure sessions

Secure HttpOnly cookies, CSRF protection, lockouts and reauthentication for sensitive actions.

03

SSRF defense

Connectors block private and metadata addresses and bound redirects and response size.

04

Immutable snapshots

Visitors read published data and keep the last safe route when a source fails.

05

RBAC and audit

Role permissions, invitations, important actions and exportable evidence.

06

Security headers

CSP, HSTS, nosniff, referrer policy and frame protections.

Report security concerns through the contact page.

Request access →

Ready to organize every link?

Request access →