Secure Integrations

When you connect external services to KnowStack, your credentials and data are handled securely.

OAuth Integrations (Gmail, Slack)

Gmail and Slack use OAuth 2.0, the industry-standard authorization protocol. This means:

  • KnowStack never sees your Gmail or Slack password
  • You authorize specific permissions (scopes) on the provider's own consent screen
  • You can revoke KnowStack's access at any time from your Google or Slack account settings
  • OAuth tokens are encrypted at rest

IMAP Email Connections

For IMAP email accounts, your server credentials (host, port, username, password) are encrypted using AES-256 before storage. Connections to your email server use TLS encryption.

Telegram Connections

Telegram authentication uses the official Telegram API (not bot tokens). Your phone number and session string are encrypted at rest. The authentication flow includes support for two-factor authentication.

Disconnecting Integrations

You can disconnect any integration at any time from the Data Collection page. Disconnecting removes the stored credentials and all fetched data associated with that integration.

After disconnecting an integration, any Knowledge Bases generated from that data are preserved. Only the raw source data (emails, messages) is removed.