Security information regarding third-party reports.
Claims circulating on third-party websites and forums about data allegedly associated with bitbybit Studio — including material using the identifier “DATABASE-2026-bitbybit-studio-25M” — originate from external sources and have not been verified by bitbybit Studio.
For information about bitbybit Studio’s approach to security, data handling, and service availability, please refer to our Security & Trust page and our public status page.
How bitbybit handles security
Security at bitbybit is treated as an ongoing programme rather than a fixed checklist, covering application development, infrastructure, access management, third-party services, and operational process. The practices below are the standing ones, described in full on theSecurity & Trust page and governed by thePrivacy Policy.
- Encryption in transit and at rest
- Personal information is encrypted both in transit and at rest, as described in the Data Security section of the Privacy Policy.
- Controlled access
- Access to systems and to customer information requires authentication and is controlled. Inside the product, workspace roles determine what each member of your team can see and do.
- Reviewable agent activity
- AI Studio keeps logs of what your agent said and did, so agent activity can be reviewed after the fact rather than taken on trust.
- Your data stays exportable
- Customer records, conversation history, and tags remain yours, and bitbybit supports full data export — so you can take your customer database with you.
- Third-party providers are in scope
- bitbybit runs on services operated by other companies. Those providers are treated as part of the security surface rather than outside it.
- A published disclosure route
- Security researchers have a responsible disclosure process and a machine-readable contact at /.well-known/security.txt.
Where to find more
- Security & Trust — data handling, access management, third-party services, responsible disclosure, and service availability.
- Service status — current service state and operational updates.
- Privacy Policy — what information bitbybit collects and processes, why, how it is shared, and the rights available to you.
Customers with questions about their own account or deployment can reach the team at help@bitbybit.studio. Security researchers should follow the responsible disclosure process rather than reporting through public channels.