The open internet
Rate limits, CSRF protection, and embed sessions that carry a hashed token.
Theme
Palette
Your own colour
Saved for this browser, on every page.
Security
Every control on this page names the test or the class that makes it true. The limits are written down too, because a missing sentence reads like a promise.
composer test:security
Implemented
| Control | What it means for you | Proved by |
|---|---|---|
| Workspace isolation | Separate workspaces and projects limit cross-workspace access. | WorkspaceIsolationSweepTest |
| Limited service keys | A project key has abilities, a deployment allowlist, an expiry and revocation. | ProjectServiceKeyManager |
| Connections kept out of content | Provider and tool credentials stay outside public workflow content. | ProjectConnectionManager |
| Restricted outbound calls | Workflow calls to the network go through a restricted URL policy. | UrlGuard unit tests |
| Human approval | A workflow can pause until an eligible member reviews it. | ProjectWorkflowApprovalManager |
| No secrets in run results | Public run resources omit secret connection material. | WorkflowRunResource contract tests |
| Checked model output | Structured output is validated against its schema before anything acts on it. | StructuredOutputStrictModeTest |
| Encrypted settings and keys | Settings and provider keys are encrypted at rest and never logged. | SettingsManagementTest |
Who we defend against
Naming who we defend against is what makes a gap visible. The threat model lists each one, the control that answers it, and the test that makes it fire.
Rate limits, CSRF protection, and embed sessions that carry a hashed token.
Every query scoped to a workspace; keys never cross one.
Server-side permission checks on every action.
Output checked against a schema before anything acts on it.
Audited installs and no source maps shipped.
Settings and provider keys encrypted at rest.
Not claimed
Found something?
Use the contact form and put “Security” in the first line. Include what you found and how to reproduce it. Please do not open a public issue about a weakness that is not fixed yet.
Confirm every assurance you need before you use the platform in production.