Deterministic authorization
Models can request an action, but policy code makes the final access-control decision.
Security overview
DiskDrive treats every AI as a limited client, every retrieved item as untrusted data, and every durable action as something that should be authorized and auditable.
Models can request an action, but policy code makes the final access-control decision.
Every durable resource belongs to an authorized Space, and searches are constrained before retrieval.
Each client receives its own identity and OAuth scopes and can be revoked independently.
Uploaded files are scanned, object keys use internal IDs, and access is checked before signed URLs are issued.
Durable resources preserve creator and source information, and agent actions produce activity evidence.
Users can export retained data, disconnect clients, and use an explicit account-deletion workflow.
Responsible disclosure and support
Do not include passwords, tokens, private archive contents, or exploit payloads in an ordinary support message.