Bound grants
Every run uses a short-lived grant bound to organization, device, project, task, adapter, model, mode, intent, and reserved credits.
Security posture
The commercial service coordinates bounded local execution without copying whole repositories into Cloud storage or exposing its provider credential to customer devices.
Every run uses a short-lived grant bound to organization, device, project, task, adapter, model, mode, intent, and reserved credits.
The repository remains on the customer machine. Prompts and context selected by Claude Code pass through the gateway to DeepSeek for processing, but are excluded from the Cloud audit database.
Unknown device, expired grant, model mismatch, missing credits, or receipt conflict stops execution instead of widening authority.
The DeepSeek key is a server-only secret. The Bridge receives an expiring gateway token, never the provider key.
A lost final acknowledgement is reconciled from a local pending receipt. The provider run is not repeated automatically.
During private preview, security reports use the confidential process documented in the open-source project SECURITY.md.