Skip to main content
Fact0 requires owner authentication for the dashboard and API keys or an owner JWT for ingestion/read APIs. Initial setup is performed through a trusted local command; public registration and invitations are disabled. The default Claude profile captures full values available from supported hooks and supported transcript records. The API does not redact this profile. Prompts, source code, tool arguments, results and errors may contain sensitive information. They are stored in your PostgreSQL instance and, during failed delivery, in the collector’s owner-readable local spool. Choose hash or metadata capture explicitly when needed. Protect .env, database volumes, backups and collector state. Full content belongs in the authenticated inspector, not ordinary server logs. Use TLS for remote connections and keep database and private service ports inaccessible externally. Hash chains and signatures have a limited trust model; see verification. Report vulnerabilities privately as described in the repository’s SECURITY.md. Maintenance and response times are best effort.