Last updated June 2026
Astron stores the account you create, the workspaces you belong to, your conversations and messages, agent runs with their steps and tool calls, search sources, artifacts, uploaded file content, memories, tasks, and an audit log of tool executions and approvals. All of it is scoped to your workspace.
To answer you, Astron sends the conversation, relevant workspace context, and enabled memories to its model provider. Web search queries are sent to DuckDuckGo. Pages you ask Astron to read are fetched directly. Nothing is sent to a connected application unless you approve the action.
The model provider key and connector tokens are held server-side only. They are not exposed to browser JavaScript, public configuration, HTML, source maps, or analytics, and secrets are redacted from logs.
You can inspect, disable, and delete any memory from the Memory page. Deleting a conversation removes its messages. Deleting a file removes its stored content.
You decide what to upload, what to connect, and what Astron may do outside the workspace. Every external action requires an explicit approval that is recorded.