Security & privacy
You are putting client material into this. Isolation, identity and a complete audit trail are architectural decisions in the Hub — not settings you have to remember to switch on.
The Hub is invitation-only. Every request is checked against your session — there is no shared or public password, and nothing is reachable without signing in as yourself.
Content belongs to an account. Accounts cannot see one another’s projects, sources, workflows or outputs. There is no cross-account search.
Interactive prototypes execute in a locked sandbox with no network access, no cookies, and no reach into the rest of the page.
Account and user administration, workflow runs, publishing and visibility changes are all recorded with who did it and when.
AI calls are made from our backend rather than your browser, and answers are grounded in the material you supplied rather than the open web.
Diagnostics can be run on metadata alone — timings, token counts and cost — with prompt and response text excluded entirely.
Controls you can point your security team at, not a list of adjectives.
We work with a deliberately small group of researchers — close enough that the Hub is built around how the work is actually done. Tell us what you research and we'll be in touch.
Request an invitation