Confident Security
companyOpenness profile
1 product on the map — 1 open.
Openness
5 high confidence- license
- Apache-2.0(OSI)
- source
- public(github.com/openpcc/openpcc + spec/whitepaper)
- core-gated
- ungated
Fully OSI-licensed (Apache-2.0) across the reference implementation and related repos, with the spec and whitepaper public. Confident Security runs a commercial managed service (CONFSEC) on top, but that is an open-core business model around a fully open standard rather than open-core licensing. The compute-node half is published rather than withheld: confidentsecurity/confidentcompute carries the compute_boot, router_com and compute_worker binaries plus the Packer image build, so the part that actually runs the inference is open, and the OpenPCC README frames the project as "deployable on your own infrastructure". CONFSEC remains a managed service Confident Security sells on top, mentioned but not required, which is why nothing in the core counts as gated.
- https://raw.githubusercontent.com/openpcc/openpcc/main/LICENSE recorded 2026-08-13
Verbatim Apache License 2.0 body at repository head
- https://api.github.com/repos/openpcc/openpcc recorded 2026-08-13
Repository metadata - openpcc/openpcc, language Go, license spdx_id Apache-2.0, public and not archived, 948 stars, 31 forks, last push 2026-01-08
- https://raw.githubusercontent.com/openpcc/openpcc/main/README.md recorded 2026-08-13
"fully open, auditable, and deployable on your own infrastructure"; the whitepaper is in the tree at whitepaper/openpcc.pdf; the repo carries the Go client, a C library underlying the Python and JavaScript clients, and in-memory services runnable locally via mage runMemServices. The managed CONFSEC service is named as a separate offering, and the compute node is pointed at confidentsecurity/confidentcompute rather than withheld.
- https://raw.githubusercontent.com/confidentsecurity/confidentcompute/main/README.md recorded 2026-08-13
The compute-node half of the standard is published - Go service binaries compute_boot (which attests to the TPM, GPU and other hardware), router_com and compute_worker, plus compute-images Packer scripts for building the node image on multiple clouds
- https://github.com/openpcc/openpcc recorded 2026-06-17
Apache-2.0; "open source framework for verifiably private AI inference"; OHTTP gateway, attestation, transparency log, client SDKs
- https://cloudsecurityalliance.org/blog/2025/11/13/introducing-openpcc recorded 2026-06-17
defines OpenPCC as an Apache-2.0 standard for provably-confidential cloud compute; launch Nov 2025; Confident Security