PRE-RELEASE · EARLY ACCESS CONSULTATIONS ARE OPEN

SECURITY & TRUST

Current controls and proposed service safeguards, kept separate.

The marketing site currently collects only form submissions. It does not accept code, files, target credentials, payments, or assessment data, and it does not launch security tests.

01

Marketing site today

Requests are validated server-side and stored in a non-public structured database provided by the hosting platform. There is no public read endpoint. Access is limited to authorized operators with project access.

  • No advertising analytics or tracking pixels
  • No nonessential cookies added by Loki AI
  • No file uploads or external embeds
02

Proposed assessment service

Before launch, service design must address isolated execution, controlled network egress, target allowlists, ephemeral credentials, tenant separation, agent action logs, environment lifecycle, emergency stops, and deletion workflows. These are design requirements, not claims of completed controls.

03

Report a concern

Use the responsible disclosure form for this website. Do not test systems you do not own or control, disrupt availability, access other people’s data, or include secrets in the initial report.

SCOPED EARLY ACCESS

Tell us what you need to assess—and what must stay untouched.

Discuss your use case