← Back

Security

API-key authentication

Every control endpoint (add/remove targets, trigger a run, read results) requires an X-API-Key header — fails closed, never open.

Your data stays yours

Results are delivered directly to the destination you configure. We don't retain a copy or route your data through a third-party store.

Bring your own credentials

Any LLM or delivery-integration keys the build uses are yours — you control the account and spend.

Scope discipline

We collect only publicly visible data from the target(s) explicitly agreed at scoping.

Found a security issue?

Contact us through the channel you used to place your order.

Aeterna AI Architects © 2026