Novo North Security

Workspace access, Helper controls, saved information, and security contacts.

Last updated: September 18, 2026

Security

Last updated: September 18, 2026

North combines workspace access controls, personal helper permissions, and managed infrastructure. The Privacy Policy describes data handling and providers.

Access and permissions

Workspace business tables, app documents, and original files use dedicated infrastructure. Account records, task conversations, extracted content, Memory, and operational records also use shared infrastructure with workspace and member access controls.

Personal task conversations remain private to the member within the workspace. Supported content can be shared, including public file and app links. Sharing an app does not automatically grant access to linked resources or connected accounts.

Owners can restrict services and capabilities; members can choose stricter permissions. Supported actions can be allowed, require approval, or be turned off. Published Workflows follow current permissions. Stop requests cancellation; it does not undo completed actions or recall information already sent. Activity, version history, and Trash cover supported actions and content.

Saved information and browsers

Saved logins, keys, and private values are encrypted at rest and owner-private in North. Authorized delivery infrastructure can decrypt them; this is not end-to-end encryption. Keys enabled for code can be read and copied by authorized programs.

Browser sessions are task-scoped and can reuse live login state until they end; North does not configure persistent profiles. Protected inputs use destination checks and masking, but the receiving website receives the approved value.

Processing and diagnostics

North saves meeting transcripts and recaps, not meeting audio/video recordings. Uploaded media are separate files. Novo does not train or fine-tune its models on customer inputs, outputs, conversations, or uploaded files. Provider terms govern their processing and retention.

The production web service uses HTTPS. Diagnostic filters remove selected credentials and request fields. Authenticated session replay is masked; other analytics and selected AI traces can contain identifiable information and text. See Privacy for scope and exclusions.

Contact

No service guarantees complete security. Report concerns to security@novonorth.com; send privacy and processing questions to privacy@novonorth.com. Certification or contractual requirements need separate agreement.