> ## Documentation Index
> Fetch the complete documentation index at: https://docs.usehenry.ai/llms.txt
> Use this file to discover all available pages before exploring further.

# Settings and safety

> Personal and workspace controls for the Agent Browser, saved sites, saved sign-ins, and the activity log.

Open **Settings → Agent Browser**. The page starts with a plain description of what the Agent Browser is and how it keeps you safe, then the controls.

## Your controls

* **Agent Web Browser** switch. Off means Henry will not start browser tasks for you. Your saved sign-ins are kept.
* **Your saved sites.** Add a site (for example `portal.example.com`), a short name, and what Henry does there. Henry can browse other sites too; saved sites tell it what you use them for. Turning a saved site off removes that context without blocking the site.
* **Saved sign-ins.** Every site where you have signed the browser in. Sign out of one, or click **Disconnect browser** to delete every saved sign-in at the browser provider.
* **Activity.** Every browser task you have run, with its status: Queued, Running, Waiting for sign-in, Waiting for approval, Succeeded, Failed, or Cancelled.

## Admin controls

Workspace admins see additional switches on the same page (and under **Capabilities** in **Settings → Team settings**):

* **Allow the agent browser in this workspace.** Off disables browser tasks for every member, regardless of their personal setting.
* **Only browse approved sites.** On limits Henry's browser to the sites listed on this page. Off lets Henry browse other ordinary websites too. Personal workspaces are always open.
* **Members can add their own sites.** Off means only the workspace sites are available.
* **Workspace sites** and **Sites other members added** lists.

## What is always true

* Henry never sees, stores, or types your passwords. You sign in on your own device through a secure live-view link.
* Anything irreversible stops and asks you first. An approval authorizes exactly one action and cannot be reused. If Henry proposes the same action with different specifics, it asks again.
* Major banking, brokerage, and payment sites are blocked for everyone.
* Henry stays on the task's site. If a redirect takes it elsewhere, the task stops.
* Text on a web page is never treated as an instruction to Henry.
* Sessions are recorded and screenshots kept for 30 days for review, then deleted.

## Limits

* 20 browser tasks per person per day.
* Interactive conversations only; scheduled tasks do not use the browser.
* Every browser task charges the credits it uses, up to 8,000 per task.
