Role policy
Guest capabilities are restricted and unknown tools are never treated as low-risk by default.
Security model
YonerAI treats risky tool execution as an auditable workflow with explicit decisions, expiration windows, and policy boundaries.
Guest capabilities are restricted and unknown tools are never treated as low-risk by default.
Approvals expire quickly. Stale approvals cannot be replayed later.
Public web APIs require tokens and secrets are isolated from user-editable settings.