Every request is served over TLS 1.3. Secrets, persona files and chat history are encrypted at rest with per-workspace envelope keys.
Built to be boringly safe 🔒
Encrypted end-to-end, per-workspace isolated, audit-logged, monitored by the engineers who wrote the runtime. The security stack you’d expect from a much bigger company — without the compliance theatre.
Every hosted agent runs in its own container with a dedicated key ring. One workspace can never read another workspace's traffic, secrets or logs.
We hold every model provider account. Your requests never touch a third-party API key — you talk to Claws, we talk to the model.
Team members get workspace-scoped roles. Personal access tokens carry the narrowest scope that gets the job done, and can be revoked in one click.
Every login, secret access, deploy and admin action lands in an append-only audit log you can export from the console.
The people who wrote the runtime carry the pager. Security incidents get a human eye within the hour, day or night, with a public postmortem within a week.
Responsible disclosure and a real bounty.
If you find a vulnerability, tell us first. Email security@claws.io with a description and a proof of concept. Confirmed reports get an acknowledgement within 24 hours, a fix ETA within 72, and a bounty scaled to severity.
We don’t lawyer bug reporters. Test only against your own workspace, respect user privacy, and we’ll work together in good faith.

Need a DPA, SOC 2 report or a signed questionnaire?
Email security@claws.io — we’ll send the current pack within a business day.