Who owns the skills and the system?
You do. Skills are plain files you can read and edit, and the code, the domain, and the data are yours outright, with no per-seat license. Hosting can sit in your own accounts from the start, or WalterSignal can host and operate it for you and move it into your accounts on request.
Is my data separated from other clients?
Yes. Every client runs as their own deployment with their own database. Two clients never share a database, so a fault in one system cannot reach another.
Is my system a one-off build?
No. Every client runs on the same maintained codebase, switched on through a configuration file that selects modules such as ordering, scheduling, CRM, quoting, and billing. Fixes and improvements reach every client without a rebuild.
Where is security enforced?
In the database. Every table denies access unless a rule allows it, public forms write only through a function that re-checks every field, and prices are calculated by the database rather than taken from the browser. A test suite checks every table for these rules.
How are changes released?
Every database change is a versioned file, and every code change runs type checks, tests, and structural checks. Releases go through one deploy command that checks the target and settings and refuses to start if anything is wrong.
Which AI model does it use?
Whichever fits. AI features call one standard endpoint set by configuration, so changing the model or provider, or moving to your own hardware, is a settings change. The AI proposes and a person confirms before anything is saved.
Can another developer maintain it?
Yes. It is built on mainstream tools: Next.js, Postgres through Supabase, and Vercel. The handover includes the full source and documentation.
What can an AI agent do to my data?
Read it, by default. Agent connections to your database open in read-only mode, so the database itself refuses any write. Write access is granted by a person for a specific job.
Can anything go out without my approval?
No. Every email, publication, or code merge an agent prepares is shown to you as a proposal first, and it runs only when you approve it.
Where are passwords and API keys kept?
In a password vault, read only when the system starts. They never appear in source code, skill files, or configuration, and every change is checked for credentials before it is committed.