Skip to content

How Cortex works

Context and privacy

How Cortex bounds selected context, credentials and durable state.

Cortex uses context selected for the current objective: workspace files, attachments, page observations, connector results and prior session events. Each source remains subject to identity, tenant policy and the capability of the originating client.

Credentials are not inserted into prompts or exposed as conversation context. Only context selected or authorized for the task is made available to Cortex.

Organizations can control retention, and supported clients can disable optional local content persistence. Review selected files, pages and connector results before sharing them with a session.