Isolation

Your workspace is its own container, not shared with any other user.

Inside the boundary
Your workspace Files, processes, running services
Other user's workspace Other user's workspace

No network path to other workspaces

One path out: filtered outbound traffic — see Outbound network

What this does not change

Commands still wait for you

Isolation keeps workspaces apart from each other, not from you. A command the AI wants to run still waits for your approval first — see Command approval.

Secrets go through the vault

Credentials you attach are handled by the vault, not pasted in the clear — see Secrets vault.

Pausing keeps the disk

Pausing a workspace frees its running slot; it does not delete anything. A paused workspace's disk stays until you delete it yourself.

Something missing or wrong here? Say so. The documentation is part of the product, not an afterthought. All topics · Security · Status · Legal & privacy · Home