privacy data use · Terms of Service
Clawvisor policy finding
“ Cloud service: API credentials you store are encrypted with AES-256-GCM on our infrastructure. Credentials are decrypted only in memory during request execution and are never logged. Self-hosted: Credentials are stored encrypted on your infrastructure. We have no access to your credentials, data, or server environment. Credentials are decrypted only in memory during request execution and are never logged. Cloud relay: When a daemon connects to the cloud relay, all tunnel traffic is encrypted in transit via TLS. A subset of routes — agent gateway requests, task operations, and connection requests — additionally enforce end-to-end encryption between the client and daemon, making their contents unreadable by the relay. Other routes, including the MCP protocol used by IDE plugins, are protected by TLS only. Credentials stored in the local vault are never transmitted to the relay.”
- Document
- Terms of Service
- Captured
- 2026-07-20
- Location
- § 5 (Credentials and Security)
- Snapshot SHA-256
- 848ed4fc6588bc6519d30f1f2bd9471240b7ef158cfa892647b671743c7ce6c7
Informational only, not legal advice. Terms change; verify the source and capture date.