UnaPrompt Security
UnaPrompt is designed to limit access to private user content and reduce unnecessary exposure of account data.
Account and content access
Private product records such as saved prompts, prompt revisions, templates, folders, and brand profiles are access-controlled so signed-in users can access their own records. Administrative product data is kept separate from normal user access.
AI request processing
When a user chooses Generate or Refine, the information needed for that request is sent through Base44’s AI generation service. UnaPrompt does not require users to publish their saved prompts in order to use the product.
Usage protections
Generation requests are authenticated and usage limits are checked on the server before an AI request is made. UnaPrompt also validates request size and avoids returning raw internal server errors to the browser.
Data minimization
UnaPrompt does not intentionally ask users to store passwords, private API keys, authentication codes, or payment credentials inside prompt fields. Users should avoid entering secrets into prompts or brand profiles unless they are comfortable transmitting that information to the AI processing service.
Responsible reporting
If you believe you found a security issue, contact GreenSox Digital with enough detail to reproduce the problem without exploiting other users or accessing data that is not yours.