Skip to content

Security

Control is a product feature, not a policy page.

OYYO is designed so that the sensitive parts of business work can stay under your control, by architecture rather than by promise.

In developmentยท 0.2-0.9

Design principles

  • Local when it matters

    A task marked local-only is designed to execute on your hardware, with no model call leaving the machine.

  • Explicit execution mode

    Local, hybrid and cloud are visible states, not hidden defaults.

  • Scoped agent permissions

    Agents receive the narrowest capability needed for the step in front of them.

  • Sandboxed execution

    Code and tool use run inside isolated environments with bounded reach.

  • Approval gates

    Irreversible or outbound actions require a human decision.

  • Audit trail

    What ran, on what input, under which permission, producing which artifact.

Honesty

What we do not claim.

OYYO does not currently publish certifications, and no page on this site implies one. Compliance posture will be published when it is real and verifiable, not before.

Think. Create. Execute.

Questions about data handling?

Talk to the team directly.