Security

Security boundaries for AI support diagnosis

Rinhelp is designed to investigate technical support issues inside a narrow boundary: tenant-scoped access, read-only investigation context, and human review before anything reaches the customer.

Effective date
March 24, 2026
Product boundary
Read-only investigation with human review
Contact
support@rinhelp.com

Security boundary

The product is intentionally narrow

Rinhelp is built for AI support diagnosis, not autonomous operations. The service gathers context needed to investigate technical issues, produces an internal draft, and keeps a human review step before any reply, fix, or escalation.

That narrow scope is part of the product design. It reduces the amount of access the system needs and keeps the output framed as a draft for review rather than an action taken on your behalf.

What Rinhelp can access

The service reads the context needed for diagnosis

Support and technical context

  • Support-thread content and ticket metadata.
  • Connected runtime signals such as Sentry issues.
  • Connected customer repo context used as read-only evidence.

Workspace-scoped account data

  • Read-only database facts needed for investigation.
  • Tenant-scoped credentials and integration state.
  • Operational logs needed to run and support the service.

What Rinhelp cannot do

The service does not get write access by default

  • It does not run write, update, or delete queries against customer databases.
  • It does not apply code changes to customer repos as part of diagnosis.
  • It does not send customer-facing replies automatically.
  • It does not apply fixes, change production settings, or take operational action on its own.

Human review

Nothing customer-facing is meant to ship without review

Rinhelp returns a diagnosis draft or investigation draft for internal review. Founders or engineers stay responsible for deciding whether the output is grounded, what action to take, and what to tell the customer.

When the evidence is weak, the system is meant to fall back to an investigation draft with explicit gaps instead of forcing a confident answer.

Data handling

Data protection follows the investigation boundary

Rinhelp uses encrypted transport, access controls, and workspace-scoped integration handling where appropriate. The service is built around least-privilege access to connected systems.

Customer data is processed to operate the service, run the investigation flow, return internal drafts, and support the workspace. For more detail on privacy and data handling, see the privacy policy.

Security contact

Security questions or reports go to support@rinhelp.com.

Include the workspace name, the affected system, and enough detail for us to understand the issue quickly.

This page describes the current product-authored security boundary and should be reviewed alongside legal and infrastructure materials before broader launch.