Encryption
Sealed from device to model.
Chats travel over TLS 1.3 and are stored with AES-256. Inference runs inside hardware-attested enclaves (Intel TDX with NVIDIA confidential computing), so the GPU operator and Harbor never see a readable prompt. Each enclave proves what it is running before it receives a request.


