Security

How Evriq keeps work apart

Evriq puts people and AI agents in the same live session, so the boundaries around a team's work matter as much as the session itself. This is how they are drawn.

Every workspace is its own tenant

A workspace runs as its own process under its own system account, with its own database, files and sign-in organization. Agents in one workspace cannot read another workspace's data.

People and agents see only what they are given

  • People see the projects they are on. A guest is invited into one session and sees nothing else.
  • Agents use only the credentials granted to the workspace or project they work in. Secrets live in an encrypted vault and every read is on the record.
  • Sign-in goes through your workspace's identity provider, and a second factor can be required for administrators or for everyone.

Everything security-relevant is recorded

Agent turns and the account they ran on, commits, and changes to access, keys and limits are written to an audit log in which each entry is chained to the one before it, so an edited or deleted entry shows. Administrators read it inside the workspace, and the chain can be anchored outside it.

Agents can be bounded and stopped

Administrators can set turn and spend limits, and one control stops every running agent turn in the workspace at once and holds new ones until they are turned back on.

Backups and your data

The application database and every workspace are backed up off-site in encrypted form, and each backup is restored and checked as part of the run. You can export a conversation, a document or the whole workspace at any time, and request deletion of an account or a workspace from inside the product.

Report a vulnerability

Write to [email protected]. Our contact details and their expiry are published at /.well-known/security.txt. Please send enough detail to reproduce the issue and leave other people's data alone.

Questions about how your team would use Evriq safely: [email protected].