Trust & safety
Safe by design.
Tamanor is built to protect your brand without ever putting your accounts or your customers at risk.
Connections
Tamanor connects to platforms exclusively through their official OAuth and API integrations. We never scrape, and we never ask for or store your social passwords.
- Official OAuth / API connectors only
- No scraping of any platform
- No client passwords — ever
- Read-only mode by default
- Platform capability checks before any action is offered
Tokens
Access tokens obtained through OAuth are stored server-side only. They are never shown in the interface, never written to logs, and never included in the audit trail. Our production architecture is designed for encrypted-at-rest token storage backed by a key management service.
Actions & control
Sensitive actions (reply, hide, delete) are approval-gated. AI can quickly classify and propose, but nothing is executed without an authorized human review, and every decision is recorded.
- Human approval workflow for sensitive actions
- Complete, append-only audit log
- Role-based permissions across the workspace
- No automatic execution of moderation actions
Security topics
Detailed, honest write-ups of Tamanor's security posture:
Responsible disclosure
If you believe you have found a security issue, please reach us through the contact page. A dedicated security mailbox is configurable before production and will be announced when live — we do not publish a placeholder address that is not monitored. See security disclosure for details.