Security and privacy

Keep an AI workspace that can act under control

Flowmint can read files, run commands, use authorized connections, and create deliverables. Permission boundaries, execution environments, and traceable activity are part of the product rather than hidden behind the chat.

Four operating principles

Workspace isolation

Files and execution are organized by workspace, and the agent works only with context authorized for the current task.

User-authorized connections

GitHub, GitLab, and MCP connections require explicit configuration and enablement.

Credentials stay out of chat

Connection credentials are stored and injected server-side rather than shown as messages, files, or ordinary tool arguments.

Traceable activity

Messages, tool calls, errors, and file changes are recorded as events so users can review what happened.

Security and privacy

Controlled execution

Configurable sandboxing

Deployments can use Native, Docker, or Microsandbox backends with resource and network policies.

Workspace runtimes

Dynamic pages can run services inside their workspace, while static deliverables need no extra process.

Browser and command verification

The agent can verify real output but does not bypass authentication, network policy, or site access controls.

Security and privacy

How data is handled

Files remain in the workspace

Uploads, generated files, and intermediate artifacts can be viewed, downloaded, or deleted with the workspace.

Model handling follows deployment settings

What is sent to a model and how it is retained depends on the configured provider and deployment.

Deletion covers workspace resources

Deleting a workspace removes its application data and files; copies in external systems remain subject to their own policies.

This page describes current product boundaries. It does not claim security certifications or compliance commitments that Flowmint has not obtained. Private deployments can further control models, networks, storage, and sandbox policy.

Start with a controlled workspace

Describe the goal first, then add files and external connections only when needed.

Get started