Privacy · first pillar

Private by architecture — not by slogan.

We do not ask you to trust a cloud that “takes privacy seriously.” We give you a product that defaults closed, runs on hardware you own, and only publishes what you gate.

Marketing ≠ vault Loopback + WG Host-only seed Explicit Suite Get
Security model Network layers WireGuard

Posture

If it is family data, it does not live on this website. If it is an organ (forge, models, chat, vault), it does not listen on guest Wi‑Fi. If something is public, it is a brochure or a door you deliberately opened — with auth.

Two surfaces

Never confuse brochure with product

M

thebriefcase.app (public)

Suite directory, guides, downloads, FO kit demos. May use standard edge logs (IP, user-agent, referrer).

Never stores: vault files, chat history, model weights, biometric templates, forge private repos.

P

The Briefcase App (yours)

Product folder on your Mac. Suite Get is explicit. Optional WireGuard mesh for multi-box and travel.

Stays yours: unless you configure an outbound service. We do not silently “sync to our cloud.”

How private — concrete

Defaults that bite

01

Closed by default

Organs bind 127.0.0.1 + WireGuard IP — not 0.0.0.0 for house SSID. Guest next door scans nothing useful.

02

Host-only seed

Only The Briefcase.app preloaded. No warehouse of apps pretending to be installed. Smaller surface, clearer trust.

03

Publish is a decision

Public family doors are optional, named, TLS’d, and auth-gated. Silence is the default.

04

Travel without exposure

WireGuard mesh for remote custody — not “open Ollama on the modem.” Optional until you leave the house.

05

Identity custody

Family SSO, passkeys, optional Greet biometrics on your stack — not a rented IdP as the only door.

06

One Mac is enough

Privacy does not require DGX or NAS. Power hardware scales capacity — not the right to be private.

Binding lawPrivate organs listen on:
  127.0.0.1          — same machine
  WireGuard IP       — mesh peers (e.g. 10.1.0.5)

Reach paths only:
  1. On the box
  2. Over WireGuard
  3. Through a door you published + authenticated

Locks = authentication + network edge
Not = “security by hidden ports.”

Layer map

L0

Public marketing

This site. Brochure. No vault.

L1

Gated public doors

Optional. TLS + family auth. Only what you list.

L2

WireGuard mesh

Private peers. GL.iNet-friendly. No Tailscale requirement.

L3

Product folder + loopback

The Briefcase.app · Suite Get · *.localhost.

Security model → Network layers → Get host