Fully private
A space stays with the people you name. Nothing leaves that circle.
Security
Nobody sees a source they are not entitled to. Anything derived carries the same limit.
01
Fully private, partly shared, or open. Nobody sees a source they are not entitled to.
A space stays with the people you name. Nothing leaves that circle.
Teams gain from each other’s patterns while their sources stay confidential.
Shared across your organization.
Fully private
Partly shared
Open
02
Access control at knowledge-base, department, and hierarchy levels, plus fully isolated spaces.
Someone with several roles gets the combined access of all of them.
A space can be cut off from the rest of the organization when it must be.
Upload, clipper, Teammate, and agents all honor the same access.
03
Anything Cluesora derives from a source carries that source’s permissions, all the way down.
A generated lesson, quiz, or illustration keeps the permissions of the pages it came from.
An answer never shows a line from a source the reader cannot open.
No one sees more than the source allows.
Each carries the source's limit
04
An AI agent gets exactly the permissions of the person who connected it.
If they cannot see a source, the agent cannot see it either.
Teammate follows each person’s permissions. On Slack and Teams, only linked accounts can talk to it.
Revoke a connected agent under Profile → Connected agents.
One connected agent can see every space in the organization.
The agent sees only what the person who connected it can see.
05
Run on Cluesora’s shared SaaS, or run hybrid with your data plane inside your organization. Either way, the control plane is shared.
Hosted by Cluesora, with region-pinned data residency.
Your data plane stays inside your organization. The control plane stays shared, run by Cluesora.
Workspace activity is logged.
06
Encrypted in transit and at rest. Activity is logged.
Encrypted while it moves and while it is stored.
Workspace activity is logged. Agent reads and writes are logged too.
SSO, SAML, OIDC, and SCIM are standard.
07
You can see what a procedure said on a date and who changed it.
New versions take over. Old ones are kept and dated, never deleted.
Sources are never rewritten. Every answer traces to its origin.
Anyone can correct what is wrong, and their edit wins. Unclear calls are checked first.
Refunds are processed within 30 days.
Changed by the support leadRefunds are processed within 14 days.
Kept, dated, still readable08
Every way in gets the same checks and the same permissions.
PDF and Markdown upload, Chrome clipper, Confluence import, MCP agents, and Teammate in Slack and Teams.
Cluesora’s Slack and Teams agent is on Pro. Only linked accounts can talk to it.
Reading is never metered, for people or for MCP agents.
Works today
Planned
09
Being production-ready does not mean every governance question is solved.
PDF and Markdown upload today. More formats are coming.
Planning a learning goal into weekly slots is coming. It is not available now.
Unclear calls get checked before they change anything. That is not a claim that every case is solved.
If a control you need is not on this page, it is not a silent yes. Ask us.
No. Anything derived from a source carries that source’s permissions, all the way down.
Exactly what the person who connected it can see. No more.
Yes. With hybrid cloud your data plane stays inside your organization and the control plane is shared. Or use the shared SaaS, with region-pinned data residency.
No. Teammate answers when asked. Only people an admin has linked to a real account can talk to it.
You fall back to Free. Nothing is deleted.
Jira, email, GitHub, weekly learning planning, and formats beyond PDF and Markdown. Those are planned or coming.