Privacy

Baseline is local-first. Raw prompts, raw outputs, and repository paths stay on the workstation by default. Cloud sync stores run summaries, health scores, findings, workspace hashes, and redacted observation hashes.

Raw output export happens only if the operator explicitly enables allow_raw_output in ~/.baseline/config.json. API tokens can be revoked by deleting them from the local config and dashboard. Synthetic and user-provided redaction checks run before export.