Authorization first
Robots rules never substitute for Convex workspace authorization or API checks.
Seller resource
Public pages are crawlable only when they are approved; authenticated workspace data remains behind authorization, and analytics uses an explicit allowlist.
Workspace boundary
Product photos, Source facts, prompts, generated assets, storage IDs, signed URLs, and seller identity remain workspace-scoped. A public example requires a separately approved derivative and disclosure.
Robots rules never substitute for Convex workspace authorization or API checks.
The public registry does not enumerate private Sources automatically.
Consent-gated events exclude product content, prompts, email, names, raw URLs, and storage references.