Security overview

AI access is useful only when the user remains in control.

DiskDrive treats every AI as a limited client, every retrieved item as untrusted data, and every durable action as something that should be authorized and auditable.

01

Deterministic authorization

Models can request an action, but policy code makes the final access-control decision.

02

Tenant isolation

Every durable resource belongs to an authorized Space, and searches are constrained before retrieval.

03

Per-AI access

Each client receives its own identity and OAuth scopes and can be revoked independently.

04

Safe file handling

Uploaded files are scanned, object keys use internal IDs, and access is checked before signed URLs are issued.

05

Audit and provenance

Durable resources preserve creator and source information, and agent actions produce activity evidence.

06

Portability and deletion

Users can export retained data, disconnect clients, and use an explicit account-deletion workflow.

Responsible disclosure and support

Report a suspected security or abuse issue.

Do not include passwords, tokens, private archive contents, or exploit payloads in an ordinary support message.

Report an issue