Skip to main content

Protect your workspace

Security is a shared workspace habit. Start with strong account access, narrow permissions, and a clear response plan for exposed credentials or unexpected activity.

Security checklist

  • Use a unique password and multifactor authentication where available.
  • Give members the lowest role that lets them do their work.
  • Rotate API keys and revoke unused connections.
  • Avoid placing secrets or sensitive customer data in agent instructions.
  • Review members, integrations, and audit signals regularly.
If you suspect a key or account has been exposed, revoke the credential first, then investigate and replace it.
See API keys and Team Members for the controls you can manage directly.