Security

Your process stays in your building.

AThink robots run on Windows machines you own. We don't host your robots, your documents or your screens, and we would rather tell you exactly what does reach us than ask you to trust us.

Where your data lives

What stays, what reaches us, and what only you decide.

Stays with you

  • •The robots, their data, and their history, encrypted on your machine
  • •The documents and screens they work with
  • •The AI knowledge base, stored locally

Reaches us

  • •A licence check: your account, a machine id, the app version, and the operating system
  • •The date a robot last ran. Never which robot, what it did, or any of its data
  • •If a paid feature was attempted on a free plan (robot import, public tunnel, or Cortex pairing): its name only
  • •Your privacy choices themselves: whether crash, log, and usage reporting are on or off
  • •A check for updates at startup

Only if you say so

  • •Crash reports
  • •Log files
  • •Usage statistics and security sign-in events
  • •All off unless you turn them on

A machine running AThink needs to reach athink.ai once a week to confirm its licence. AThink is not designed for a network with no internet.

AI

Your AI, on your terms

  • •Bring your own key for Anthropic, OpenAI, Google Gemini, Groq, DeepSeek or OpenRouter. AI calls are never counted or billed by us.
  • •Or point the agent at a self-hosted, OpenAI-compatible model inside your network.
  • •Each agent step has a step limit and a timeout, and can only read the knowledge bases you allow it.
  • •Stop the robot and the agent stops with it.

Web publishing

Nothing goes public by accident

  • •A robot's web app is published only when its Tunnel setting is switched on. It is off by default.
  • •An administrator can turn publishing off for the whole machine in Security settings.
  • •Put basic, bearer or API-key sign-in in front of any page, with rate limits and security headers.
  • •Public publishing all day is a Team feature. Individual includes one 60-minute demo tunnel a day.

Cortex (Enterprise)

A fleet console you host

  • •Cortex runs on your own server. Machines connect outward to it, so no port is opened on any PC.
  • •Three roles: administrator, operator and viewer, with an audit trail of who did what.
  • •Sign-in is checked by your AThink account with an emailed code. Cortex stores no passwords.
  • •Passwords for protected robots are passed to the machine for the run and never stored or logged.

Security questions or a questionnaire to complete? Write to support@athink.ai.

Try it on your own machine.

Free on one machine, with every module included. Your robots and their data never leave it unless you say so.