Security
It stays inside what you allowed. You still decide — including whether it goes live.
The app and task data are hosted in the EU (Google Cloud, Netherlands). Each run edits code in an isolated sandbox (E2B), and the model provider (Anthropic) sees the task and the code it is given. Repository credentials never enter the sandbox. Merge is never ours. Every provider is listed in the privacy policy.
Stays inside what you allowed.
The work stays in a bounded workspace. Shipping stays a human decision.
Credentials stay out of the workspace it edits.
Repository credentials are not placed in the workspace it edits.
You decide what goes live.
There is no autonomous merge. You get a change to review. Going live stays a human decision.
Acts for a person, not a channel.
Velden works only for people linked to your organization. A task started in Slack is readable by its creator, org owners, and anyone who acted on it.
Org-scoped. Reviewable.
Tasks live in your organization. Interpretation, scope, and the change are artifacts you can inspect — not a chat that disappears.