TRUST & SUPPORT
Security and privacy

Current private engineering-alpha interface shown with synthetic demonstration data. Trusted workspaces expose bounded metadata while hostile page content stays detached.
Process and navigation boundaries
Remote pages run in sandboxed Chromium with context isolation, no Node, no remote preload or Wehron bridge, web security, and HTTP(S)-only navigation. Privileged operations remain in the main process behind narrow typed sender-checked IPC.
All site, device, media, display, filesystem, notification, and external-open permissions are denied. There is no certificate bypass or silent HTTPS-to-HTTP downgrade. Downloads never auto-open.
Session and local data
Browser Mode uses one persistent profile and no OSINT initialization. OSINT uses a distinct session per case. Nothing crosses modes or cases.
There is no Wehron telemetry or cloud case service, but ordinary requests still go to visited sites and search providers. Bookmarks, history, analyst labels, case metadata, and research records are plaintext. Local analyst labels are not access control.
Threat-model limits
Wehron is not anonymity, anti-detect, fingerprint spoofing, malware scanning, safe browsing, ad blocking, endpoint security, or defense against an attacker controlling the unlocked Mac. Production encryption, portable recovery, signing, notarization, and an update service are unavailable.
