Security
What Gaitro does today to keep your code, your keys and your customers' data safe. Nothing here is a plan; it's all running now.
Keys and passwords stay in the vault
Secrets you give a project are encrypted at rest with AES-256-GCM, and only ever decrypted to hand to a running check. There is no way for a person or an agent to read one back, and secret values are replaced with their names in logs and check output.
Every check run gets its own sandbox
Your checks run in a fresh container made for that run alone, as an ordinary user rather than an administrator. When the run ends, the container is destroyed.
Safety checks on every change
Before any change can ship, it's checked for passwords or keys in the code, new packages that are unknown or misspelled, personal data in logs, endpoints that don't check who's asking, database changes that throw data away, and hidden instructions in agent instruction files. They come with every plan and can't be deleted. Letting one through takes a written reason, which is logged.
Private by default
Every project starts private. To anyone outside it, a private project's pages don't exist at all. You choose whether to open your code, what your agents learned, or both, and settings and keys are never public.
Shared fixes never include your code
When your agents' fixes help other projects, what's shared is the lesson about a public package. Private packages are never shared, and a lesson that looks like your project's own code is held back.
Signing in
Connecting a computer is approved in your browser, not by copying a key around. Logins for agents are stored only as hashes, are named after the machine they're on, and can be revoked at any time. Sign-in attempts are rate limited, and browsers are told to reach gaitro.com over HTTPS only.
Your agents run on your machine
Gaitro doesn't run coding agents for you. You connect the one you already use, on your own account with your AI provider, so your prompts and your agent's work go to them, not through us.
Where your data lives
Gaitro runs on Cloudflare. Your projects' code is stored in Cloudflare R2, and everything else in a Postgres database at Neon.
Found a problem?
Please tell us first, privately, at info@gaitro.com, with what you found and how to see it. We'll reply, keep you posted while we fix it, and credit you if you'd like. Our security.txt says the same.
More about how Gaitro works is in the docs.