Encrypted Cloud Compute

Tinfoil is a security research lab building an AI cloud for private, verifiable computation.

Our products

For your private thoughts, projects, and work.

For your thoughts

Private Chat

Chat with powerful AI assistants while keeping your conversations private. Available in the browser and on iOS.

For your projects

Private Inference API

Build AI applications that keep all data private. Our API is OpenAI-compatible, open-source, and fully verifiable.

Usage-based pricing

For your workloads

Tinfoil Containers

Run any Docker image in a secure enclave. Bring privacy and verifiability to applications and custom AI workloads.

$20/month + usage

Customer Stories

Trusted by companies, organizations, researchers, and people.

UC Berkeley
“Running our own custom Docker container on Tinfoil Containers is a major unlock. It lets us run our full end-to-end system in trusted hardware using the same simple Python SDK we already use to call Tinfoil's embedding and LLM models. Serverless enclaves have finally arrived!”
Darya Kaviani, PhD Student, UC Berkeley
Workshop Labs
“We have fast deployment cycles for servers that we run on Tinfoil TEEs to guarantee customer privacy. Tinfoil Containers makes the TEE deployment friction almost nonexistent and lets us iterate quickly. It's an important step towards the future where most ML workloads are secured by running on verifiably-private TEEs.”
Rudolf Laine, Co-founder and CTO, Workshop Labs

Industry highlights.

Tinfoil in research mentions, corporate press, and industry collaborations.

Red Hat

Collaborating with Red Hat on open-source confidential AI infrastructure for private inference.

Meta

Featured in a Llama case study as the only multi-GPU infrastructure offering production-ready, verifiably private AI.

Trail of Bits

Security audit and webinar collaboration on TEE vulnerabilities and confidential computing best practices.

Canonical

A story about building audit-ready, verifiably private AI with Ubuntu as the foundation for multi-platform confidential computing.

Tinfoil makes your AI workloads secure, verifiable, and private.

Hardware-backed security.

Hardware-backed security

Supported hardware

  • Intel
  • NVIDIA
  • AMD

Enterprise compliance.

Privacy of local.
Power of cloud.

Tinfoil runs AI models inside secure hardware enclaves. This gives you the privacy of local AI with the power of cloud computing.

Tinfoil AI inference: hardware attestation verifies a secure enclave that processes data in isolation, so Tinfoil cannot see user data.ClientSecure EnclaveData processed in secure hardware, isolated from the server.Does not see user dataHardware AttestationTinfoil Server

With Tinfoil:

  • Your data is encrypted directly to a secure enclave
  • Your data cannot be accessed or shared, not even by Tinfoil
  • These security guarantees are cryptographically verifiable

Our Mission

Tinfoil was founded to create the private garden for thought.

As AI becomes more personal, omnipresent, and powerful, protecting the privacy of our conversations, thoughts, memories, and intellectual property is what preserves human relevance. AI should be an exoskeleton that empowers humans rather than replaces them. We are building the technical privacy safeguards to make this possible, using encryption, secure hardware, and other means to make it impossible for third parties to access your brain: a prerequisite for human empowerment and flourishing.