Sensitive actions can pause for an explicit yes. Your model keys stay yours. Hosted seats are isolated. Proof: approval-loop captures below — then Privacy for policy detail, Download for the local path.
Work inbox keeps goals visible after the chat window closes.Sensitive actions pause for explicit approval.Approval gate before a sensitive action.
Approvals, BYOK, and clear limits
Approval gates
Configured sensitive tool actions can pause for an explicit yes — delete, send, spend, or leave the machine — before they run. Approvals reduce risk; they do not guarantee complete safety.
BYOK model keys
Your provider keys stay on your machine (or your hosted seat). VibeOS does not resell model tokens as the product — you pay your provider.
Local-first by default
Desktop, CLI, and gateway run where you install them. Memory, skills, and sessions live under your VibeOS home — not a shared chat tenant.
Clear product limits
Hosted is an optional managed seat, not a bundled LLM subscription. Approvals, tool policy, and profile isolation stay under your control. Unsigned Desktop builds still need one explicit OS allow (see Get started).
Add the agent where you work
Install Desktop, connect your model provider, start with one real task. Hosted access is optional.