Collty Help

PRIVACY AND ACCESS

Private workspaces, encryption and access

Understand what is public, what stays private and how Collty separates the two.

01

Public discovery and private work are separate

Public pages, published Insights, public Signals metadata, public team pages and approved public profile information can be discoverable. Private workspaces, tasks, files, billing records, non-public profiles and all chats remain outside public indexing and AI discovery resources.

A public object and an authenticated destination can coexist. Search engines may understand that a public Signal or team page exists without receiving private conversations, participant-only details or cabinet data.

C
Privacy boundaryPublic and private data
Live
Public discoveryPublished pagesPublic profilesApproved team previews
Access checksEncrypted fieldsWorkspace scope
Private workProjects and tasksChats and filesBilling and private profiles
The public discovery surface remains separate from authenticated private work.
02

Know which surface you are using

SurfaceTypical visibilityExamples
Public discoveryPublic and indexable where explicitly publishedHome, About, Partnership, Insights, approved public team/profile pages and public Signal discovery metadata
Authenticated accountSigned-in account onlyCabinet overview, personal settings and private workspace navigation
Team-scopedAuthorized team members and managersPrivate team composition, owned team settings and internal collaboration context
Project-scopedAuthorized client, partner and confirmed project participants according to roleTasks, project files, Work Graph, project analytics and commercial records
Conversation-scopedConversation participants onlyTeam chat, project chat and direct messages
Owner-privateThe account that created the private recordPrivate collaboration notes and protected personal account data
03

How private data is protected

04

Access follows the real role and object relationship

  • Being signed in is not enough to read an arbitrary private project; the account must have an authorized relationship with that project.
  • A saved team member is not automatically an active project participant.
  • Pending specialists cannot receive project tasks until the required confirmation is complete.
  • Client, partner and specialist cabinets can show different actions for the same project because each role owns different decisions.
  • Opening another workspace does not bypass a project, team, billing or chat permission check.
05

Chats are always private

Team chats, project chats and direct messages are private participant data. They are not placed in sitemaps, RSS or Atom feeds, llms resources, public profile payloads or public search APIs.

An authorized project agent may read only the conversation context permitted for its project responsibility. This does not convert the chat into public content and does not allow another user or crawler to retrieve it.

06

Public indexing is intentionally limited

ResourcePurposePrivate data included?
SitemapLists canonical public pages that should be discoveredNo
RSS / AtomPublishes approved public Insights or Signal discovery contentNo private chats, tasks or workspaces
llms.txt and Markdown pagesExplain Collty and public documentation to AI systemsNo authenticated records
Structured dataDescribes public Organization, WebApplication, article or other supported public objectsNo private project or account detail
Authenticated APIServes account and workspace workflows after access checksOnly data permitted for the authenticated role
07

Share deliberately

  1. 1
    Check the object

    Confirm whether you are sharing a public profile, a team preview or a private project object.

  2. 2
    Check access

    Add only the people who need the workspace or project.

  3. 3
    Use project communication

    Keep confidential decisions inside authorized project tools rather than public Signals.

08

Protect your own access

  • Use a unique password or the configured identity-provider flow and sign out on shared devices.
  • Do not forward project links as a substitute for adding the correct authorized participant.
  • Review team and project membership when somebody leaves a collaboration.
  • Use public Visibility only for information intended to support professional discovery.
  • Contact Collty Support with the affected workspace and object if access appears broader or narrower than expected; do not include passwords or credentials.
Was this guide useful?Help us keep the instructions clear and current.