Home
News
Tech Grid
Data & Analytics
Data Processing Data Management Analytics Data Infrastructure Data Integration & ETL Data Governance & Quality Business Intelligence DataOps Data Lakes & Warehouses Data Quality Data Engineering Big Data
Enterprise Tech
Digital Transformation Enterprise Solutions Collaboration & Communication Low-Code/No-Code Automation IT Compliance & Governance Innovation Enterprise AI Data Management HR
Cybersecurity
Risk & Compliance Data Security Identity & Access Management Application Security Threat Detection & Incident Response Threat Intelligence AI Cloud Security Network Security Endpoint Security Edge AI
AI
Ethical AI Agentic AI Enterprise AI AI Assistants Innovation Generative AI Computer Vision Deep Learning Machine Learning Robotics & Automation LLMs Document Intelligence Business Intelligence Low-Code/No-Code Edge AI Automation NLP AI Cloud
Cloud
Cloud AI Cloud Migration Cloud Security Cloud Native Hybrid & Multicloud Cloud Architecture Edge Computing
IT & Networking
IT Automation Network Monitoring & Management IT Support & Service Management IT Infrastructure & Ops IT Compliance & Governance Hardware & Devices Virtualization End-User Computing Storage & Backup
Human Resource Technology Agentic AI Robotics & Automation Innovation Enterprise AI AI Assistants Enterprise Solutions Generative AI Regulatory & Compliance Network Security Collaboration & Communication Business Intelligence Leadership Artificial Intelligence Cloud
Finance
Insurance Investment Banking Financial Services Security Payments & Wallets Decentralized Finance Blockchain Cryptocurrency
HR
Talent Acquisition Workforce Management AI HCM HR Cloud Learning & Development Payroll & Benefits HR Analytics HR Automation Employee Experience Employee Wellness Remote Work Cybersecurity
Marketing
AI Customer Engagement Advertising Email Marketing CRM Customer Experience Data Management Sales Content Management Marketing Automation Digital Marketing Supply Chain Management Communications Business Intelligence Digital Experience SEO/SEM Digital Transformation Marketing Cloud Content Marketing E-commerce
Consumer Tech
Smart Home Technology Home Appliances Consumer Health AI Mobile
Interviews
Anecdotes
Think Stack
Press Releases
Articles
  • Enterprise AI

Confident Security Launches Open-Source AI Privacy Standard


Confident Security Launches Open-Source AI Privacy Standard
  • by: Source Logo
  • |
  • November 6, 2025

The rapid adoption of large language models (LLMs) has created a significant data privacy gap for enterprises. To address this critical challenge, Confident Security has launched OpenPCC, a groundbreaking open-source standard designed to protect sensitive information during AI interactions. Built by a team of engineers from Databricks and Apple, this new protocol ensures that confidential data remains secure when using both cloud-based and on-premises AI models.

Quick Intel

  • Confident Security released OpenPCC, an open-source standard for securing data in AI model interactions.

  • It prevents the leakage of prompts, outputs, and logs, protecting PII, PHI, and PCI data.

  • The framework acts as a security layer between enterprise systems and AI models with minimal code changes.

  • Key components include SDKs, a compliant inference server, and core privacy libraries for encrypted communication.

  • The standard is released under open-source licenses to ensure community-driven, neutral governance.

  • This addresses the critical risk of employees pasting internal data into AI tools, a common security vulnerability.

Securing the AI Data Pipeline

OpenPCC directly tackles the growing enterprise risk where internal data is pasted into AI tools. Statistics reveal that 78% of employees have engaged in this behavior, with one in five cases involving sensitive personal or regulated data. The standard solves this by operating as a protective layer that keeps all user information fully encrypted and inaccessible to unauthorized parties throughout the AI process. This ensures that confidential data is never exposed, whether companies are using public cloud AI services or their own private deployments.

An Open-Source Foundation for Trust

The release includes a comprehensive suite of tools to establish a new benchmark for AI privacy. The OpenPCC specification and SDKs provide a standardized protocol under the Apache 2.0 license. A compliant inference server demonstrates how to deploy and verify private AI interactions in production. Core privacy libraries, such as 'Two-Way' for encrypted streaming and implementations of Binary HTTP and Oblivious HTTP, form the technical backbone for fully private communication between users and AI systems. By open-sourcing the framework and planning an independent foundation for its stewardship, Confident Security aims to create a universally trusted standard that prevents future restrictive license changes.

The launch of OpenPCC represents a pivotal step towards reconciling the demands of rapid AI innovation with the non-negotiable requirement for data security. By providing a provable and open standard for privacy, it empowers enterprises to adopt AI with confidence, ensuring that sensitive data remains protected throughout the entire lifecycle of an AI interaction.

About Confident Security

Confident Security builds provably private infrastructure for AI. They’re the creators behind CONFSEC, an enterprise-grade privacy platform, and OpenPCC, an open-source standard based on Apple’s Private Cloud Compute (PCC). CONFSEC and OpenPCC are thoroughly tested, externally audited, secure, production-ready, and deployable on any cloud or on your own bare metal. Using a combination of OHTTP, blind signatures, remote attestation, TEEs, TPMs, transparency logs, and more, Confident Security provably guarantees that nobody can see the user’s prompt.

The company is led by Jonathan Mortensen, a two-time founder who has previously sold companies to BlueVoyant and Databricks. It is built by a team with deep expertise in secure systems, AI, infrastructure, and trusted computing, with backgrounds from Google, Apple, Databricks, Red Hat, and HashiCorp.

  • AI SecurityData PrivacyOpen SourceSaa SEnterprise AI
News Disclaimer
  • Share