TRANSPARENCY
Security
Bounded requests. Explicit access.
Sources must be public HTTPS JSON endpoints. Outbound requests validate and pin public DNS addresses, validate TLS, reject redirects and private addresses, and enforce response and time limits. Source credentials, selected values, event payloads and full URLs are encrypted in the application database. No arbitrary source code or LLM runs in the comparison path.
Your data stays scoped to your workspace
API keys have explicit permissions and optional project restrictions. Secret values are shown only at creation and are not returned by ordinary read APIs. Source data is untrusted content, never an instruction to an agent.
Report a concern
Contact team@rerunlab.com for security reports or abuse concerns. We do not claim compliance certifications or an uptime SLA.
Read the supported source constraints →