The Vault
How credentials are stored, what Heyno can do with them, and what it can never do.
How credentials are stored
The Vault stores passwords and credentials the way a password manager does. Entries are encrypted on your device before they sync, and they are encrypted in transit and at rest thereafter.
Entries can be organised into groups and shared with specific people in your business rather than with everybody, so a shared supplier login does not become a company-wide secret.
What Heyno can do with them
Heyno can use a stored credential to sign in to a service on your behalf when you have asked it to do something that requires signing in. It uses the credential; it does not display it.
Every use is recorded: which entry, for what, and when, so the question of what a credential was used for has an answer that is not somebody’s recollection.
What it never does
It never reads a credential back to you in a chat, never includes one in a document or an email, and never sends one to a connected tool through the Connector.
A request that would result in a credential being exposed is refused rather than partially fulfilled.
Recovering access
Because entries are encrypted on your device, recovery depends on your account rather than on support being able to read your data. Set up recovery when you create the Vault, not when you need it.