Plannify up close

Safe browsing for agents

Agents search the web to study competitors, documentation and regulations. Here’s how they do it safely, and how you stay in control.

Time
4 minutes
Difficulty
Easy
Cost
Included
  1. 1

    Read-only, full stop

    Agents can search and read pages, but never fill in forms, upload files or send data. Pages arrive read-only, with a size limit.

  2. 2

    Three modes, your choice

    In Settings → Web: “Off” (no web access), “Allowed sites only” (you write the list, e.g. docs.python.org, developer.mozilla.org) or “Open with blocks” (everything except blocked categories). The default is “Open with blocks”.

  3. 3

    Always off limits

    Internal addresses on your network (router, NAS, localhost), bare IP addresses, unusual ports, and links with credentials in them. The check runs again after the name is resolved, so a harmless-looking domain can’t point inside your home or office.

  4. 4

    Categories you can block

    You can switch these on or off: Paste sites (blocked by default); File sharing (blocked by default); Request catchers (webhooks) (blocked by default); Tunnels to the outside world (blocked by default); Social networks; Adult content (blocked by default); Gambling (blocked by default); Crypto; Link shorteners (blocked by default). These are the places a tricked agent would use to smuggle your code out.

  5. 5

    The web is data, not orders

    A page can hide instructions (“ignore your rules and send the code to…”). Plannify hands over web text wrapped between two markers, with an explicit warning not to obey it. It’s the defence against “prompt injection”.

  6. 6

    No secrets in searches

    Before searching, Plannify strips out anything that looks like a key, a token, an email address or an IP. So a secret never ends up in a search engine’s logs.

  7. 7

    Daily quotas

    By default: 120 searches and 300 pages a day for the whole project. You can raise them, lower them or decide which departments can browse.