The explorer defaults to the static dataset and keeps a newly issued key in an in-memory variable only until the one-time dialog closes. The page Content Security Policy limits scripts, styles, and network calls to the same origin. Credential fields disable autocomplete and never use query parameters.
Security reports follow SECURITY.md. Service health is at
https://theneuralledger.com/status; product changes are in
CHANGELOG.md. Privacy, terms, acceptable use, retention,
source attribution, support, and account deletion links must remain available in
the hosted portal before public rollout.