Trust center

Security

The practical safeguards and boundaries used by BazBots.

How access is protected

BazBots uses a dedicated account provider for sign-in. Application records are scoped to the signed-in account, and widgets use high-entropy embed tokens.

Widget and crawler boundaries

Widget text is escaped before display. Website fetching rejects private and loopback destinations, limits request time, and caps the pages and text stored.

Security reports

Use the chat on the Support page to report a suspected security issue without including passwords, tokens, exploit code, or personal data in the first message.