How we protect data
We limit access to your tools and data. We also check what each tool can do.
Account access
Passwords and account keys let tools use an account. We use built-in app links where we can. We try to limit what keys can do and how long access lasts. Share secrets through secure tools. Do not put them in chats or public files.
Checks before actions
A person must check and agree to some steps. We use these checks when a wrong message or record change could cause harm to the business.
Use of AI
AI can draft text, sort data, or make short notes. We limit it to the task and test it with sample records. It does not get free use of send tools unless the client has agreed to that risk.
When a task fails
A tool should show what ran, what failed, and what was skipped. It should also show what needs a person to check. Staff should not need to read code to see what happened.
Use only what is needed
We use the data needed for the task. We do not put full client files, lead lists, or call notes on public pages unless the client asks us to share that exact file.
Limits on tools
We avoid tools with broad access and no clear checks. Each tool should have a clear job. Key actions should be easy to review and undo.