Dark mode
Security overview

Security overview

Helpin holds your team's projects, customer conversations, deals, and documentation, so protecting that data and controlling who can reach it is built into the platform. This page summarizes how.

How your data is protected

  • Encrypted at rest and in transit. Your data is encrypted while it is stored and while it moves between your browser and Helpin.

  • Isolated per workspace. Your data is never shared across workspaces.

  • Never used to train models. Helpin does not use your data to train AI models.

Who can access what

Access in Helpin is layered, so you can give each person exactly what they need.

Workspace roles

Every member has a workspace role — Viewer, Member, Admin, or Owner — that controls what they can do. Workspace administrators and owners manage members, invitations, roles, and organization-wide settings such as security, billing, audit, and integrations. See Invite team members.

Module access

Projects and Docs are available to every member. Module access decides which of the other modules — CRM, Support, and Automation — each member can open; owners and admins always have all of them. It is enforced on the server as well as in the interface: if someone hasn't been granted a module, requests to that module are rejected for them, whatever their role. See Module access control.

Permissions inside a module

Within a module, permissions are checked on every request. In Docs, for example, separate permissions control reading, editing, publishing to the public help center, administration, and imports. See Docs access & sharing.

Team-scoped visibility

Teams add another boundary. A team-only Docs space is visible only to its selected teams — people outside those teams do not see its documents or its search results. In Projects, members see work from the teams they belong to.

Sharing and controls on content

  • Share links for documents are read-only, and you can revoke one at any time by turning sharing off — the link stops working immediately. Internal-only embeds are left out of shared views.

  • Locking freezes a document's content while keeping it readable, which is useful during audits or legal review.

  • Recoverable deletion lets you preview what a delete will remove and restore spaces, collections, and documents within the retention window.

AI agents under your control

Agents can work autonomously or with human approval — you choose the approval mode. When you build a custom agent, you choose its tools, targets, and schedule. Agents escalate to a person when they need help.

Email authentication

When you send support email from your own domain, Helpin signs outbound mail with DKIM and uses a Return-Path record for bounce handling, and recommends a DMARC policy if you do not already publish one. See Email delivery overview.

Was this article helpful?