Your AI Biz Partner · 你的AI合伙人
Security and operating controls

Access is limited. External actions are deliberate.

RONIC combines technical safeguards with operating approvals. The goal is to prevent a generated idea, unverified claim or draft budget from becoming a public campaign without accountable human review.

01

Restricted access

Product Revenue Agent is an internal administrative tool. Access is limited to authorised RONIC employees and contractors through authenticated, allowlisted administrator identities.

02

Account authority

Provider connections are accepted only for accounts RONIC owns or has explicit authority to manage. A connection is verified before campaign actions become available.

03

Credential protection

Provider credentials are encrypted at rest using AES-GCM. Encryption keys and production secrets are managed separately from application source and are never published in the website or repository.

04

Approval gates

Product evidence, strategy, landing page, campaign content, budget and launch are distinct approvals. A later approval cannot silently substitute for an earlier one.

05

Safe external state

Paid campaigns are designed to be created paused. Budget increases, destination changes and public launch require explicit operator decisions.

06

Audit and traceability

Records retain their product, strategy, experiment, landing-page version, provider, owner, status, next action and timestamps so changes can be traced to the preceding decision.

07

Data minimisation

RONIC collects and stores only the account configuration, campaign records, performance metrics, enquiry data and operational evidence needed to provide the agreed service.

08

Error handling

Provider errors are recorded without exposing credentials. Failed operations remain visible for review and are not presented as successful external changes.

Report a concern

Security and privacy enquiries are monitored at support@ronic.au.

Please include the affected service or account, what you observed and a safe way to contact you. Do not send passwords, access tokens, private keys or other secrets by email.

Email security contact