CravixCravix

Security & Privacy

We never store passwords. Tokens are encrypted in a vault and brokered securely with least-privilege access.

Vault + Broker

We never store passwords. OAuth tokens are encrypted in a vault and served on-demand by a credential broker with short-lived access.

Client Control

One-click disconnect, scope transparency, and tenant-level audit logs so you stay in control.

Best Practices

Least-privilege scopes, HMAC-signed webhooks, KMS encryption, and data minimization.