Security and data access

Your context should move with clear boundaries.

This page describes the controls available today and avoids claiming certifications or guarantees that the beta product does not have.

Account

Access begins with your account

Workspace content is associated with an authenticated ActionDrivenNote account. Keep your sign-in credentials private and contact support if you suspect unauthorized access.

MCP

Connections require authorization

A compatible AI client does not receive workspace access merely by knowing the MCP endpoint. You sign in and review the requested access before a connection is approved.

Scopes

Read and write are distinct

MCP clients can request read access or read-and-write access. Write operations are available only when the corresponding permission has been granted.

Transport

Service traffic uses HTTPS

The website, application, and remote MCP endpoint are served over encrypted HTTPS connections to protect data while it travels between your client and the service.

Know the limits

Security is a practice, not a badge.

No online service can promise absolute security. ActionDrivenNote uses technical and organizational safeguards appropriate to the service and continues to improve them as the product develops.

Do not grant write access to an AI client you do not trust. Review the client’s own privacy and security practices as well as the permissions requested by ActionDrivenNote.

Report a security concern

Send enough detail for the issue to be reproduced safely.

Include the affected URL or feature, the behavior you observed, reproduction steps, and a safe way to contact you. Do not send passwords, access tokens, or other users’ private data.

support@actiondrivennote.com →