Clawback Security Overview

How we handle your data, credentials, and API traffic.

Last updated: April 2026

Section 1

Architecture

Zero Install. Zero Supply Chain Risk.
Clawback runs entirely on Cloudflare Workers. Nothing is installed on your machine. No PyPI packages, no npm modules, no Docker containers, no dependencies in your project. Your setup is one environment variable. This means there is no package to compromise, no dependency chain to poison, and no code running in your Python or Node.js process. Your credentials never touch third-party code on your infrastructure.
Section 2

Credential Handling

Section 3

Data in Transit

Section 4

Audit Replay Process

Section 5

Report Delivery

Section 6

What We Don't Do

Section 7

Infrastructure

Section 8

Limitations & Roadmap