# ARCY Documentation > ARCY is an in-product AI assistant for B2B SaaS. It answers a user's > question from your own documentation, runs the step-by-step flows you > author, and reports what changed. Everything is configured in the > dashboard, not in code. - Getting started - [Create account](https://docs.arcyai.com/getting-started/create-account): Sign up with a work email, choose a plan, name your first Product, and save the two secret keys that are shown only once. - [Sign in](https://docs.arcyai.com/getting-started/sign-in): Get back into the dashboard, reset a password, recover from a blocked or empty workspace, and sign out. - [Quickstart](https://docs.arcyai.com/quickstart): Install arcy.js in your framework, tell ARCY who the user is, verify the install, and sign user ids for identity verification. - [Reference](https://docs.arcyai.com/reference): Every arcy.js call and init() option, with the values each accepts and the console warning each misuse produces. - [Pulse](https://docs.arcyai.com/pulse): Read what the agent did this week, close the questions it could not answer, and find the step where a flow loses people. - [Lift](https://docs.arcyai.com/lift): Read how many more users finish a flow with ARCY than without it, and hand the number to your leadership as a written report. - Autopilot - [Flows](https://docs.arcyai.com/autopilot/flows): Build a flow ARCY runs inside your Product step by step, choose who can reach it, and publish it to an environment. - [Train](https://docs.arcyai.com/autopilot/train): Add the sources the agent answers from, train them, and keep them current as your Product changes. - [Persona](https://docs.arcyai.com/autopilot/persona): Write the agent's instructions, its standing facts and its fallback message, once for identified and once for anonymous visitors, per environment. - [Customization](https://docs.arcyai.com/autopilot/customization): Theme the chat bar and panel, write what the widget says, pick the starter flows on the welcome screen, and decide whether visitors can attach images or move the bar. - [Origins](https://docs.arcyai.com/autopilot/origins): Add the domains your Product runs on, prove you control each one with a DNS record, and choose which environments may serve sessions from it. - [Environments](https://docs.arcyai.com/autopilot/environments): Create environments, copy each one's Token, replace a Token or Secret, choose the primary, and promote what one environment publishes to another. - [Identity verification](https://docs.arcyai.com/autopilot/identity-verification): Turn the identity check on once your signed identify() calls verify, and read the chart that shows how each session's claim fared. - [Users](https://docs.arcyai.com/autopilot/users): Find one end user by id, name or email, check the attributes identify() sent, and open any of their sessions to see what they did, in order. - [Organizations](https://docs.arcyai.com/autopilot/organizations): Check that your B2B accounts are grouped correctly by organization_id, name them, and find the hardest session across an account's members. - [Segments](https://docs.arcyai.com/autopilot/segments): Read the groups of users and accounts ARCY found in an environment, open the sessions that show each one, and copy a problem statement for your tracker. - [Attributes](https://docs.arcyai.com/autopilot/attributes): Define the attributes ARCY may store for a user or account, and check whether the values your identify() calls send are arriving and accepted. - [Localization](https://docs.arcyai.com/autopilot/localization): Add a second locale, write the translations your visitors read, and set the language the agent replies in. - [Alerts](https://docs.arcyai.com/autopilot/alerts): Choose which of the three built-in alerts ARCY detects and whether you get an email when one fires. - Settings - [Installation](https://docs.arcyai.com/settings/installation): Install arcy.js for one environment from the dashboard, verify that traffic arrives, and work through the steps that make the environment ready to go live. - [Product](https://docs.arcyai.com/settings/product): Set the Product's name, slug and icon, decide whether ARCY stores what users type, give the widget your two policy links, pause ARCY, or delete the Product. - [Consent](https://docs.arcyai.com/settings/consent): Wire your cookie banner or CMP to ARCY with three calls, know what a grant, a refusal and a withdrawal each do on the visitor's device, and read the answers in the dashboard. - [Team](https://docs.arcyai.com/settings/team): Invite teammates into the workspace, choose their role, edit departments, and free a seat when you reach your plan's cap. - [Usage](https://docs.arcyai.com/settings/usage): Read how much of each plan ceiling your workspace has used, and how agent chats and end-user sessions run day by day. - [Billing](https://docs.arcyai.com/settings/billing): See which plan the workspace is on, what each plan includes, when chats reset, and how to change plan, fix a payment or reach sales. - [Limits](https://docs.arcyai.com/settings/limits): Cap Autopilot chats per organization, per user and for anonymous visitors below your plan allowance, and tell the agent where a capped visitor can sign in. - [Account](https://docs.arcyai.com/settings/account): Change your own name, picture, email, password and department, manage the workspace's name and logo as an admin, and delete the workspace or your account. - Security - [Infrastructure](https://docs.arcyai.com/security/infrastructure): Where ARCY runs, how data is encrypted, who on our side can reach it, and where to read live status. - [How AI request content is handled](https://docs.arcyai.com/security/ai-request-content): What Amazon Bedrock keeps after a call, what ARCY logs, and what conversation content is stored so you can read it back. - [API key security](https://docs.arcyai.com/security/api-key-security): What the Token and the Secret each do, where each may live, and why the Token alone cannot spend your allowance. - [Session security](https://docs.arcyai.com/security/session-security): How ARCY proves you control a domain and how that proof keeps a third party from spending your chat allowance. - [Responsible disclosure](https://docs.arcyai.com/security/responsible-disclosure): How to report a vulnerability, the response times you can expect, and what is in and out of scope. - Privacy - [What ARCY collects](https://docs.arcyai.com/privacy/what-arcy-collects): Every kind of data arcy.js sends during normal operation, what is masked before it leaves the browser, and what is never collected. - [What we never do](https://docs.arcyai.com/privacy/what-we-never-do): The hard boundaries on data access, sharing and model training that you can quote in a vendor review. - [Data retention](https://docs.arcyai.com/privacy/data-retention): How long each type of data is kept, why the funnel window is a separate number, and how a deletion request is answered. - Compliance - [Certification status](https://docs.arcyai.com/compliance/certification-status): Where ARCY stands today on GDPR, CCPA, SOC 2 and penetration testing, so you can answer a questionnaire without overstating it. - [Data Processing Agreements](https://docs.arcyai.com/compliance/data-processing-agreements): How to request a DPA, a security questionnaire, a data-residency answer or a regulated-industry review, and how fast we answer. - [Sub-processors](https://docs.arcyai.com/compliance/sub-processors): The third parties ARCY relies on and the purpose of each, ready to copy into your own sub-processor list. - Legal Templates - [Privacy policy paragraph](https://docs.arcyai.com/legal-templates/privacy-policy): Copy-paste language disclosing the embedded ARCY AI assistant to your end users, with notes on what to change before publishing. - [Cookie policy disclosure](https://docs.arcyai.com/legal-templates/cookie-and-storage): Copy-paste language for the cookies section of your policy, naming the two cookies arcy.js sets and everything it stores in the browser. - [Sub-processor / DPA disclosure](https://docs.arcyai.com/legal-templates/sub-processor-dpa): Copy-paste language naming ARCY AI as a sub-processor in your own DPA or sub-processor list, and what to confirm before you sign it. - [AI processing disclosure](https://docs.arcyai.com/legal-templates/ai-processing): Copy-paste language disclosing automated AI processing to end users for GDPR Article 22-style requirements, and when the paragraph is not enough. - [Troubleshooting](https://docs.arcyai.com/troubleshooting): Fix each Verify installation verdict, a widget that does not show, a Content Security Policy that blocks it, and attributes or identify() calls that go nowhere. ## Full text - [Every page in one file](https://docs.arcyai.com/llms-full.txt): the complete documentation as plain Markdown.