I really would like to make it as safe and constrained as possible, but by nature this is working with personal data. I think the best thing I can do is to keep it all open source, think about privacy, and encourage people to read the code as much as possible.