hiflo/trust/safety & access

Boundaries, enforced.

Flo can read and act across company work. What it can see, which tools it can use, when it needs confirmation and what stays human are enforced outside the model.

USER-SCOPEDruns with the asker's access
26 / 28write tools ask before acting
0customer data used for model training
01The boundaries

Four boundaries between Flo and the business.

Access, tools, actions and authority - each enforced outside the model, not as a prompt.

01
Access

Sees only what you can see.

Flo's available tools are filtered by role and capability, and data access remains scoped to the authenticated user's organization and permissions.

02
Tools

Uses only what your organization allows.

Tools can be disabled at the organization level. If a tool isn't available to the user or has been disabled for the company, Flo cannot use it. The dispatch gate enforces this even if a call is forced directly.

03
Actions

Most writes stop before they happen.

26 of Flo's 28 current write tools ask for confirmation before acting. Confirmation is a property of the tool - not an instruction we hope the model remembers.

04
Authority

Sensitive people decisions stay human.

Flo can gather context, prepare work and surface evidence. It does not become the authority for decisions such as compensation, termination or final performance outcomes.

02Data

Your company data is context. Not training data.

Customer data is not used to train our models or our model providers' models. Managed model calls use zero-retention API access. Data is encrypted in transit and at rest.

03Survey anonymity

Anonymous means the identity isn't available to Flo.

Groups below the anonymity floor are withheld before Flo or a manager can use them. Free-text that reaches Flo arrives without employee identifiers.

Engineering pulse
41responses
7.4average
3recurring themes
Legal
2responses

Below the 3-response floor · result withheld

flo

Flo receives anonymous text without employee, response or department identifiers.

04Architecture

The model doesn't set the boundary. The system does.

Every request passes through identity, permission, org tool settings, data scope and confirmation before an action can land.

You ask
A person makes a request
Identity
Who is asking?
Role + capability
Are they allowed?
Org tool settings
Is this tool enabled?
Data boundary
What records can they see?
Tool
Run as the person asking
Confirmation
If required
Action + record
Result linked to the asker
05Accountability

Actions leave a record.

Flo's conversations persist under the user's access. Tool calls are stored with the interaction, and proposed actions link back to the conversation that created them.

what was asked·what tool ran·what it returned

We record observable actions and outputs - not a claim to expose hidden model reasoning.

You make the decisions.
Flo keeps the work moving.

Flo handles the watching, preparation and follow-through. You stay in control of what gets decided and what gets done. Meet Flo →

Start free Meet Flo