Security
Privacy-critical content and indexes remain on the device by default. OAuth, signed entitlements, device registration, and bounded private decisions use MemStrata services. A user-selected cloud model or connector receives only the data required for that explicit operation. Credentials are stored in the operating-system credential vault, not in page content or analytics. Customer content is not used for training unless the customer separately opts in.
Report vulnerabilities to security@memstrata.dev.