OmniLink

Security

This is the public summary of how OmniLink protects customer data. It is deliberately specific, and it is written to be checkable: every control described here is one that exists in the running system today, and where something is not in place the page says so instead of describing an intention. Managed infrastructure, database-enforced tenant isolation, TLS everywhere, and encrypted model-provider credentials are real today. Independent certification, third-party penetration testing, and a formal personnel-security program are not.

The shape of the program

OmniLink is built on a small number of well-understood building blocks: a Node.js API hosted on Google Cloud Run, a managed Supabase database for storage and authentication, a Python local runtime that executes tools on customer hardware, and integrations with third-party AI providers for inference. Each building block has a defined trust boundary and explicit controls. Because the surface is small, this page can describe it exhaustively rather than in generalities — and one consequence of that shape is worth stating up front: inference runs on your model-provider key, not ours, so the most sensitive credential we hold on your behalf is one you can revoke at the provider at any moment without asking us.