1 How Aria works
What is Aria?
Aria is Stelaah's built-in assistant. It works from your real records, labels what it generates, and when it isn't sure, it says so. It never invents a number and presents it as fact.
Does Aria make decisions for me?
No. Aria assists and drafts. It surfaces suggestions, drafts, and summaries that are clearly labelled as AI-generated so you can review and verify before acting on them.
What can Aria see?
Aria operates inside your workspace and is bound by the same row-level security and role model as the rest of the product. It can only work with data the signed-in user is already allowed to access.
2 Your data & AI
Do you train AI models on my data?
No. We do not use your workspace content to train third-party foundation models.
Does my data leave my workspace when I use Aria?
When you invoke an AI feature, the relevant content needed for that request is sent to the platform-configured AI provider's API to generate a response, then returned to you. This happens through a server-side boundary, so provider API keys are never exposed in your browser. The content is used to answer your request, not to train third-party foundation models.
Is my data sent anywhere by default, without me asking?
AI runs when you use an AI feature. It is your action that sends the relevant content for that specific request.
Are AI requests encrypted?
Yes. Requests travel over TLS, and the secret keys that authenticate them are held server-side in protected function secrets, never in the browser.
3 Providers & controls
Which AI providers do you use?
Aria currently supports Kimi 2.6 from Moonshot AI, Claude Sonnet from Anthropic, Gemini 2.5 Flash from Google, and GPT-4.1 from OpenAI. Authorized Stelaah platform operators configure the active provider in the platform control plane. Provider secrets are stored server-side as function secrets.
Can I choose or change the provider?
No. The active provider is selected by authorized Stelaah platform operators, not in workspace settings. Workspace users cannot change provider routing or view provider credentials.
Where are AI secrets kept?
AI provider keys are stored as server-side function secrets and are never sent to the browser. Secret-bearing calls always go through a server boundary, never directly from the browser to a provider.
4 Accuracy & honesty
How accurate is Aria?
Aria works from your real data, but AI can still be wrong. Anything it generates is labelled as AI-generated and should be verified before you rely on it, especially numbers, legal, or financial content.
What does Aria do when it isn't sure?
It says so. Aria is designed to degrade honestly rather than invent an answer. When the model isn't confident, it tells you instead of fabricating specifics.
Does Aria ever make up data?
No, by design. Stelaah's rule is real or nothing: Aria does not invent metrics, names, or figures and present them as real. When live data isn't available, it shows only what is genuinely known.
5 Terms & contact
Where are the full AI terms?
The complete terms for Aria and other AI features are in our Aria AI Terms, alongside our Privacy Policy and Data Processing Addendum.
Who do I contact about AI privacy?
For AI security and privacy questions, email security@stelaah.com. For data rights, email privacy@stelaah.com.
Related: Aria AI Terms, Security overview, and Security & Privacy FAQ.
Back to top