// Security
Security
Last updated: July 2026
The most useful thing we can tell you about Flowscale security is what we do not hold.
Your work never reaches us
Flowscale is files that run inside your own AI assistant account, on your own machine. Your prospect research, client files, proposals and reports stay in your environment. They are not transmitted to us, not stored by us, and we have no technical ability to read them.
That is a deliberate architectural choice, not a policy promise. There is no server of ours in the path, so there is no store of your client data to breach.
What we do hold
- Your name, email and billing country, for delivery, receipts and the update entitlement.
- Support correspondence you send us.
- Aggregate site analytics with no profile building.
Payments
Card details are handled entirely by Stripe, a PCI-DSS Level 1 certified processor. Card numbers never touch our systems. See our Privacy Policy.
Delivery and access
Products are delivered as downloads or repository access tied to your purchase. Keep your access credentials private; sharing them outside your business breaches the licence.
Your own environment
Because the system runs in your account, its security posture is yours: your AI provider's plan and data settings, your machine, your repository permissions, and your team's access. We recommend running client work on a commercial-tier AI plan where the provider does not train on your inputs.
Reporting a vulnerability
If you find a security issue in anything we ship, email hello@harborsoftware.com with the details. We will acknowledge it and tell you what we are doing about it. Please give us a reasonable window to fix it before disclosing publicly.
Harbor Software LLC · operating the Flowscale brand
1309 Coffeen Avenue, STE 1200, Sheridan, Wyoming 82801, USA
hello@harborsoftware.com