Security

Hubrix is designed to keep your team's work secure. This section covers the security controls available to you and your workspace administrator.

The Security section of Hubrix Settings showing MFA, SSO, and Sessions panels
The Security section of Hubrix Settings showing MFA, SSO, and Sessions panels

Access control

Invite-only sign-up — Hubrix does not allow self-registration. Every user must be invited by a workspace admin. This means only people explicitly approved by your team can access your workspace.

Role-based access — workspace members are either Members or Admins. Admins can manage users, billing, and connectors. Members can use all AI features.

Item-level sharing — agents, workflows, research reports, and bulk jobs are private by default. You control who can see and edit each item individually.

Authentication

Multi-factor authentication (MFA) — add a second factor to your account using any TOTP app (Google Authenticator, Authy, etc.). See MFA for setup instructions.

SSO with Google and Microsoft — link your Google or Microsoft account for one-click sign-in. See SSO for details.

Session management

Active sessions list — view all devices currently signed in to your account, with device type, browser, location, and last-active timestamp. Revoke individual sessions or all sessions at once.

Recent sign-ins table — the last 10 sign-in events with IP address and timestamp. Useful for spotting unexpected access.

See Sessions for details.

GDPR rights

Hubrix respects your data rights under GDPR:

  • Data export (Art. 20) — request a ZIP of all your personal data within 24 hours
  • Account deletion (Art. 17) — delete your account with a 7-day grace period

See GDPR Rights for details.

If you are a workspace admin and need to manage security settings for your whole team — such as requiring MFA for all members — contact support@hubrix.ai. Organisation-wide policy enforcement is available on Enterprise plans.

Reporting a security issue

If you discover a security vulnerability in Hubrix, please report it responsibly to support@hubrix.ai. Do not disclose vulnerabilities publicly before Hubrix has had a chance to address them.

Was this helpful?