Data Stays Local
Your documents, extracted text, AI embeddings, and chat conversations are processed and stored entirely on your own device. The cloud only sees metadata like filenames and timestamps—never your actual content.
Understand how truzztbox protects your data and keeps you in control.
Your documents, your AI, your control. truzztbox is built so that your sensitive information never has to leave your environment unless you explicitly choose otherwise.
Your documents, extracted text, AI embeddings, and chat conversations are processed and stored entirely on your own device. The cloud only sees metadata like filenames and timestamps—never your actual content.
Your device generates its own cryptographic identity when first set up. The private key never leaves your machine. You control all SSH access and admin credentials—we have no backdoors or master keys.
The truzztbox agent runs as an unprivileged user on your system, not as root. We cannot remotely access your device or elevate privileges. Installation requires one-time admin rights, then runs without them.
The cloud stores only what's necessary: your account info, device registration, and document metadata. When you upload a file through the web interface, it's forwarded directly to your device and deleted from our servers immediately after delivery.
The truzztbox agent running on your device is locked down with industry-standard Linux security practices:
Runs as a dedicated system user, not root
Cannot gain additional permissions after startup
Read-only system access, isolated temp directories
Limited to necessary network protocols only
Prevents code injection and exploitation
Cannot modify system kernel parameters
We're continuously improving our security posture. Here's what's on our roadmap:
Detailed, tamper-evident logs of all system and agent actions
Step-by-step instructions for encrypting your device storage
Encrypt local data with your own keys
Hardware-level isolation with AMD SEV or Intel TDX
Security is a journey, not a destination. If you have questions about our security practices or want to report a concern, please reach out.