signedreceipts.org · OpenReceipt

Use any AI. Cloak what we detect.

Cloak it first.

On supported client paths, on-device checks attempt to replace personal data they detect before sending. Detection is best-effort and can miss details, so unmatched content may reach the AI provider you selected. The gateway routes request content; it does not perform server-side personal-data detection or tokenisation. A receipt, when issued, records claims in its signed envelope and does not show that every personal-data value was found.

Detection is best-effort and may miss details or flag ordinary text. Review the content your client shows before sending; file and image handling varies by client and type. See the data map →

✦Works with
every major AI
✓Verifiable
when issued
CloakAPI

from openai import OpenAI

# via the CloakAPI local proxy, running on your machine
client = OpenAI(
    base_url="http://localhost:8799/v1",
    api_key="cloak_…",
)

# Best-effort client-side checks attempt to replace detected values; details can be missed.
# Example stand-in; unmatched details may still be sent to the selected provider.
resp = client.chat.completions.create(
    model="claude-sonnet-5",
    messages=[{"role":"user","content":
      "Summarise email from <EMAIL_482>"}]
)
Receipt: "v":"v1","alg":"ecdsa-p256-sha256","jti":"01HWRK9G…" verify ↗

Pick by who you are

Which one are you?

Same privacy architecture, five front doors. Tap “What you get” on any card for the full detail.

⌘
Mode 1 · Your setup

Your own setup.

Keep the AI you already use with best-effort on-device checks for detected details; checks can miss content.

Quickstart →
◐
Mode 2 · Chat

A private AI chat in your browser.

For anyone. No code, no setup — open it and ask. Browser checks attempt to replace detected names, emails and IDs; detection can miss details, so review what the client shows.

Open the chat →
◪
Mode 3 · Extension

Keep your existing AI sites private.

For ChatGPT / Claude / Gemini / Grok users. Keep using them with best-effort browser checks for detected identifiers; detection can miss details.

Get the extension →
◈
Mode 4 · Platform

Build private AI into your own product.

For people who build. Add client-side detection, gateway routing and receipts when issued to your app using available integrations; detection is best-effort and coverage varies by client.

Build on CloakAPI →
◫
Mode 5 · Apps

Ten ready-made apps for one job each.

For people with a task in front of them — writing, a CV, email, redaction, a spreadsheet, a translation, a scan, a document library, a file conversion, a meeting. Browser checks attempt to replace detected identifiers; coverage and file handling vary by app, and some details may be missed.

Open cloak-write →

Why CloakAPI

Thirty structural advantages.

Not a policy promise — properties of the architecture, hard to cheaply copy. Filter by theme; tap any card for the full story.

1–6 / 30
01Client-side

Best-effort on-device checks.

Clients attempt to replace detected personal data before sending; detection can miss details.

06Architecture

Gateway routing.

The gateway does not run server-side personal-data detection or tokenisation.

07Key custody

Local maps depend on the client.

Some clients use a local mapping to restore detected stand-ins; availability varies.

09Verifiable proof

Receipts you can verify.

When issued, receipts record their claims and can be checked against the public JWKS.

24Pricing

Three flat rates. No tiers.

15% pooled · 5% BYOK · 5% local. No API subscriptions.

13Enforcement

Data handling details.

The privacy policy and data map describe service data and retention.

Three flat rates. No tiers.

Pick a mode per API key. Switch any time. $10 minimum top-up · $2 trial credit after email verification.

15%
CloakAPI keys
Pooled provider keys, prompt-pool privacy.
5%
BYOK
Bring your own provider keys.
5%
Complete-local
Desktop client runs the model.

Under the hood

How it stays private.

Three steps on the standard client-side paths. The honest caveats live one tap away.

01 · On your device
Tokenise before egress

On supported client paths, on-device checks attempt to replace detected identifiers. Detection can miss details or flag ordinary text; review what your client shows before sending.

02 · At the gateway
Gateway routing

The gateway routes request content to the selected provider and does not run server-side personal-data detection or tokenisation. Values missed on-device may be relayed as received.

03 · On the way back
Verifiable receipt

When issued, a receipt records claims in its signed envelope and can be independently verified. It does not show that every personal-data value was found or that every request produced a receipt.

Private AI, with the proof.

Start with $2 of trial credit after email verification. No subscription, no seats — just a small markup on the AI you already use.