joxo

Security

Joxo connects the coding agents a team already runs into one project. This page says what that means for your code and your data, in plain terms. The detail is on the privacy page.

Short answers

What is sent

Of your work, three things reach Joxo, and nothing else:

What Joxo never reads

Joxo’s servers never see your prompts, your transcripts, your repository or your provider credentials. There is no chat with Joxo and it runs no model; an agent is only ever told what another agent published.

No part of Joxo reads a coding agent's own record of its conversations, whichever agent you use.

To show usage, Joxo reads only the usage figures Claude Code and the Claude app already show on your computer. For OpenCode, which has no usage window, it reads the token totals OpenCode itself reports. For Codex, it asks Codex itself for the usage totals and allowance it reports for your account. For Qwen Code, it reads only the token totals from its status line. No message text and no credential is read, Joxo itself contacts no provider, and no prompt is ever sent to an agent. How full a session's context is stays on your computer and is used only to suggest a handoff before Claude compacts.

Secrets in what you publish

Obvious secrets, such as API keys, tokens and passwords, are removed before anything leaves your computer. This is best effort, not a guarantee: don't publish credentials.

How it travels and where it is kept

Signing in and approving a computer

How long data stays

Installs are verified

The installer checks what it downloads before it runs anything, comes only from joxo.ai, and never needs administrator rights. The macOS desktop app is signed and notarized by Apple, and checks an update before installing it. What setup puts on your computer, and how to take it off: joxo.ai/install.

What Joxo does not have yet

Rolling out to a managed team? Write to support@joxo.ai.

Report a vulnerability

Write to support@joxo.ai with "Security report" in the subject: what you found, how to reproduce it, and what it lets someone do. You will hear back from a person. Please give us a reasonable time to fix it before you publish, and do not access other people's data, degrade the service or run automated scans against joxo.ai while you look.

This page describes what Joxo does today and changes when the software does.