Security

Your accounts. Your fleet. Your boundary.

Agencies trust us with the devices their clients' accounts live on. Here's exactly how we keep each team's devices, sessions and data separate and under its control.

Commitments

Six things that are always true.

Isolated per team

Every device, session, job and log record carries your team's ID, and every query is filtered by it. There is no shared view across customers, including for agents.

You sign in, not us

Account sign-in happens on the phone, in a live session you control from the browser. We don't collect, store or ask for the passwords to your social accounts.

Roles and access

Access is set per teammate and per device: view only, live control, or permission to assign agent work. Owners can revoke access at any time.

Every action logged

Each live session and each agent step is written to an activity log your team can review: the person or agent, the action, the device and the time.

Encrypted in transit

Traffic between your browser, the dashboard and the device session is encrypted with TLS end to end of each hop.

Reset between customers

Released devices are wiped with a full factory reset, removing apps, accounts and media, before they're ever assigned to another team.

Device lifecycle

From assigned to reset.

  1. 01

    Assigned

    A device is provisioned for your team, fitted with its own SIM and reached only through your team's dashboard.

  2. 02

    In use

    You sign in on the device yourself. Every live session and agent run is logged with who, what, when and where.

  3. 03

    Released

    When you remove a device it's factory reset, wiping apps, accounts and media, before it's assigned to anyone else.

FAQ

Security questions.

Something else? Email hello@ghosts.sh.

Get access

Get your ghosts.

We're onboarding teams in batches. Tell us about yours and we'll set up your fleet.