Don't take our word that this Space is private — check it. This page challenges the live enclave to
prove, cryptographically and right now, that your messages are handled by hardware the operator can't read, running
only the code we published.
Loading the published measurement…
If the enclave is asleep (it scales to zero when idle) this starts it first — up to ~2–3 minutes.
What a pass proves
🏭Genuine secure hardware. The attestation is signed by AWS's Nitro Security Module and chains to AWS's root — not something the operator can forge.
📖The exact code we published. The measurement (PCR0) is a fingerprint of the running image; it matches the one pinned here, which is built from open source you can reproduce.
🙈Operator-blind. Inside the enclave, memory is sealed from the host; your key is sealed to the attested enclave, so the platform relays only ciphertext.
⏱️Live, not replayed. The proof is bound to a fresh random challenge from your browser — a recorded old attestation would be rejected.