Security & Trust Center
Local-first AI workspaces. Credentials in your Keychain. Access you approve.
Outloop runs approved API work on your Mac, checks access for each Workspace and keeps a local activity audit. Use this center to review the controls, data flows and documents relevant to your organization.
Security model
Credential handling, permissions, audit records and current limits.
Privacy policy
Personal data, purposes, service providers and your rights.
Data flow & retention
What stays on your Mac, what leaves it and how deletion works.
Workspace isolation
Client separation, operator access and the boundaries of protection.
Providers & subprocessors
Outloop service providers and the separate providers you connect.
Request documents
NDA, DPA, questionnaires and available security evidence.
Scope your review
Your Mac handles normal brokered API execution. Outloop Cloud handles accounts, licensing and specific connection or transfer features. Your chosen AI and connected-service providers process the content sent to them. Review each boundary in the data-flow overview.
For certification or testing requirements, request available evidence and its scope through document requests. Detailed controls and limitations are covered in the security model and Workspace isolation pages.
Security incidents & vulnerability reports
Email support@outloop.co with the subject “Security report”. Include the affected version, a short description, impact and safe reproduction steps. Do not send credentials, customer records or a working exploit against another customer.
Ask for a private channel before sharing sensitive evidence. Do not access another customer’s systems or data to demonstrate a finding. This page does not grant testing authorization, offer a bounty or promise a response or remediation deadline.
For a suspected compromise, your administrator should review and revoke affected access and provider sessions. Contact support to coordinate investigation. Privacy requests use the existing data deletion process.