Skip to content
BIKLABS
Pricing
Log inStart free

Manage work

ProjectsPlan, prioritize, and ship togetherWork itemsActionable work with shared contextCyclesVisible cadence, scope, and progressPortfoliosStrategy connected to execution

Knowledge and AI

AI wikiCoreDecisions, docs, and living memoryBIAAIAsk, summarize, plan, and actIntakeTurn requests into structured work

Agents and control

AI agentsNewInternal and external agents in contextGates and approvalsHuman control where it mattersMCP + APIConnect Codex, Claude Code, and your agents
WikiBIAProject
One shared contextKnowledge that moves the project.

Projects, wiki, and agents connected from the first decision to delivery.

Explore the platform

For teams

Startups and productMove fast without losing structureSoftware teamsShip alongside coding agentsVibecodersFrom prototype to maintainable productEnterpriseGovernance, permissions, and control at scale

By industry

R&D consultingCases, reports, and technical knowledgeOperationsRepeatable processes with supervised AIMarketingCampaigns, content, and launchesAgencies and studiosConnected clients, deliverables, and reviews

Switch to BIKLABS

BIKLABS vs JiraLess administration, more contextBIKLABS vs LinearKnowledge and agents includedBIKLABS vs NotionDocs connected to execution
JiraNotionBIKLABS
Switch without starting overYour context moves too.

Bring projects and documentation. BIA helps turn them into a connected system.

Plan your migration

Learn

BlogIdeas about work, AI, and agentsHow it worksFrom a decision to reviewable workThe platformProjects, knowledge, and connected agentsUse casesWorkflows for different teams and industriesPlaybooksReference journeys with contextTemplatesStarting points for every teamChangelogEverything new in BIKLABSComparisonsBIKLABS versus familiar tools

Build

MCP + APIMCP Server, API, and CLIWhat agents can doIdentity, scope, activity, and reviewSecurityInfrastructure, privacy, and complianceAI Trust CenterData, models, scope, and human review

BIKLABS

ManifestoWhy we are building BIKLABSContactDemo, sales, and support
MCPAPICLI
Build with your agentsBIKLABS speaks MCP.

Give Codex, Claude Code, and your own agents controlled access to work and knowledge.

Open documentation
Security

Responsible disclosure

How to investigate and report a vulnerability without increasing risk to other people or to the service.

Review version dated September 6, 2026
Process
01Scope02Good-faith research03What a report should include04After submission05Research protection06Usually ineligible findings07Recognition and rewards
Send reports to admin@biklabs.ai with [SECURITY] in the subject. Do not include unnecessary secrets or personal data, and encrypt sensitive information before sending where possible.
01

Scope

This policy covers assets controlled by BIK AI Technologies, S.L.U. under the biklabs.ai and biklabs.es domains, including the application and APIs where publicly available.

Third-party services, social engineering, physical attacks, denial of service, and testing against other people's accounts or data are out of scope.

02

Good-faith research

Use only your own accounts and data or assets for which you have express authorisation. Limit testing to what is necessary to demonstrate the issue and stop if you accidentally access another person's data, secrets, sessions, or functions that could cause harm.

Do not maintain persistence, modify or delete data, download more information than necessary, or attempt lateral movement across tenants, roles, or systems.

03

What a report should include

Identify the affected asset, vulnerability type, reasonable impact, prerequisites, and reproducible steps. Include relevant requests and responses, screenshots, or a minimal proof of concept, removing credentials and personal data.

  • Affected URL, endpoint, version, or component.
  • Environment and role used during testing.
  • Observed impact and the scope you confirmed, without presenting extrapolation as fact.
  • Temporary mitigation or suggested fix, if known.
  • A secure channel through which we can reply.
04

After submission

We will acknowledge receipt where possible, prioritise the report by risk, and may request additional information. Investigation, remediation, and deployment depend on complexity and do not form an SLA unless expressly agreed.

Coordinate any publication with us. We will ask you not to disclose exploitable details until a reasonable fix is available or another date is agreed.

05

Research protection

If you act in good faith, follow this policy, and comply with applicable law, we will treat your research as authorised under our terms and will not take action merely because you performed that testing. This statement cannot authorise conduct against third parties or limit legal obligations outside our control.

06

Usually ineligible findings

Missing informational headers without impact, clickjacking on pages without sensitive actions, already-public enumeration, generic TLS recommendations, versions without demonstrated exploitation, and scanner-only reports without validation are not normally treated as vulnerabilities on their own.

07

Recognition and rewards

This policy does not create a bounty programme or guarantee payment, public recognition, or employment. Any recognition must be agreed in writing and must never be conditioned on a threat of disclosure.

BIKLABS / TRUST

If anything is unclear, ask us.

Legal centerContact us
BIKLABS

The BIKLABS work system

Work creates knowledge.
Knowledge moves work forward.

Projects, wiki, and AI capabilities are organized around your team's context.

Start for freeTalk to us
Explore the system01Projects02Wiki03BIA04Agents05MCP + API06Human gates
BIKLABS / MAP

Designed in Bizkaia · European infrastructure

Product

  • Projects
  • Work items
  • Cycles
  • Portfolios
  • AI wiki

AI and agents

  • BIA
  • AI agents
  • Gates and approvals
  • MCP + API
  • Security

Solutions

  • Startups and product
  • Software teams
  • R&D consulting
  • Operations
  • Marketing and campaigns
  • Agencies and studios
  • Enterprise

Resources

  • Blog
  • Changelog
  • Comparisons
  • How it works
  • The platform
  • Use cases
  • Playbooks
  • Templates
  • AI Trust Center
  • Manifesto
  • Contact
  • Pricing

Legal

  • Legal center
  • Legal notice
  • Privacy
  • Privacy choices
  • Website terms
  • B2B commercial terms
  • AI transparency
  • Usage policy
  • Cookies
  • DPA
  • Responsible disclosure
European infrastructureHuman reviewRun activityScoped MCP
© 2026 BIK AI Technologies, S.L.U.
LanguageES/EN
inghX