The operating workflow.
A complete product coordinates policy, runtime filtering, evidence, memory, and repair.
Discover sensitive browser surfaces.
Inventory login screens, payment forms, health portals, inboxes, internal tools, customer records, document viewers, clipboard actions, downloads, and pages where multiple identities share one session.
Deliverable: browser data mapDefine field-level policy.
Choose what can be captured, passed to tools, shown to models, retained in evidence, converted into memory, or reused across workflows. Policies should combine field type, domain, purpose, and user scope.
Deliverable: redaction policy setApply runtime redaction.
Mask before screenshots and prompt assembly where possible. Use stable tokens so action logs remain understandable, while keeping secret values in a tightly scoped execution channel with short expiration.
Deliverable: protected action traceControl memory promotion.
Do not let every observed field become persistent context. Require explicit rules or user approval before browser observations turn into durable preferences, identities, addresses, or account facts.
Deliverable: memory promotion receiptTest deletion and replay.
Delete a selected memory, rerun the browser workflow, and inspect screenshots, prompts, caches, summaries, and actions for leakage or behavioral resurrection.
Deliverable: deletion drill reportRepair affected work.
When sensitive or revoked context influenced a form, message, purchase, or published page, queue review, correction, rollback, and user notification with clear ownership.
Deliverable: closure receipt