Workspace - HarnessRouter Docs | HarnessRouter

Scope

Product records

Your product should still keep its own user, tenant, feature, session, response, and artifact records. Do not expose account-wide Workspace session listings directly to end users.

Open standard

Workspace-scoped keys, configured agents, sessions, and returned files are HarnessRouter's implementation of UHP's object-scope rule: every object belongs to the principal whose credential created it, on every operation. See Security considerations in the Unified Harness Protocol.