The Secure AI Chatbot Builder You Can Trust
When your chatbot handles sensitive user data, security is not optional. It’s the foundation of trust. As a new, open-source startup, we built HeHo with a security-first mindset. We provide an enterprise-grade, transparent, and auditable security model from day one, so you can build with confidence.
A Multi-Layered Security Architecture
- →
Automated Supabase Security: Our integration with Supabase is seamless and secure. During the OAuth connection, HeHo automatically creates the necessary tables in *your* database and, crucially, enables Row Level Security (RLS) policies. This ensures that your chatbot can only access the specific data it is explicitly permitted to, preventing any unauthorized data exposure from the very start.
- →
Your API Keys Remain Yours: We never see or store your sensitive API keys. Your OpenRouter API key is passed directly from your HeHo dashboard to the AI models. This client-side handling means you retain full control over your credentials, dramatically reducing the attack surface.
- →
The Transparency of Open Source: Trust through transparency is our core belief. HeHo is 100% open-source. Our code is public and available for audit by anyone. This openness holds us to the highest standard of security and allows the community to contribute to making the platform safer for everyone.
- →
Fortified by Supabase's Infrastructure: By building on Supabase, we inherit a world-class security foundation. This includes mandatory SSL/TLS for all data in transit, at-rest encryption for all database content, and compliance with the highest industry standards. We build on a rock-solid base, and so do you.