Privacy
SignalRoom stores account identity in Supabase Auth. The Auth user id is the tenant id for API keys and private overlay. Graph context keys are hashed. The raw secret is shown once and is not stored. API audit logs keep endpoint and query metadata, not the key.
This site uses essential cookies for authentication. We do not put API keys in URLs, analytics events, or client logs.