Private
Your data stays within the boundaries you choose. Protect sensitive prompts and outputs with hardware-isolated execution and deployment controls.
0G Private Computer
Verifiable, confidential inference as a service. Start in minutes with an API key and no infrastructure to operate.
TEE processing: hardware-isolated execution on every hop we operate
Verifiable routing: attested code and declared model routing
Managed service: no deployment or model infrastructure to maintain
A single-tenant inference stack deployed inside your VPC or data center, for workloads that require dedicated infrastructure and network isolation.
Your perimeter: AWS, GCP, Azure, or on-prem infrastructure
Same confidential architecture: hardware-isolated execution inside your boundary
Operated with you: deployment, updates, and monitoring by engagement
Editions are rolling out with design partners. Contact us for availability and timing.
Dedicated private inference for production workloads.
ExploreStarts with
Dedicated capacity + isolated execution
Hardware-private AI your security team can verify.
ExploreAdds
Confidential compute + verifiable inference
Policy-governed AI for regulated and higher-risk use cases.
ExploreAdds
Policy engine + compliance workflows
Country-locked, single-tenant AI with sovereign custody.
ExploreAdds
Jurisdiction control + sovereign custody
Your edition sets capabilities and isolation; committed usage determines your discount.
List price
Tiered discount
Deeper, by agreement
Custom pricing
Edition and volume are priced separately: choose the controls you need, then unlock deeper rates as usage grows.
In Private mode, no. This protection goes beyond policy. Requests are processed inside hardware-isolated TEE enclaves. Memory is encrypted at the silicon level; neither 0G nor the provider operating the GPU can inspect it. Access is blocked by the hardware, not by an internal access policy.
No. Prompts and outputs are not retained after processing and are never used to train our models or anyone else's. These commitments are written into your agreement.
Today, you can cryptographically verify our routing layer: it runs inside an attested TEE enclave, and the attestation proves the exact code in production matches the code we publish, so requests are routed as declared and models can't be silently swapped. Per-request response proofs are on our roadmap. We'll walk your security team through the verification flow during evaluation.
Not yet. Formal certifications are on our roadmap. In the meantime, our architecture offers something certifications can't: cryptographic attestation of the enclaves and routing code that handle your data. Certifications attest to process; attestations prove what's actually running. We're happy to go deep on the architecture with your security team.
We deploy a single-tenant inference stack into your VPC (AWS, GCP, Azure) or your data center, and work with you on deployment, updates, and monitoring. Open-weight models run fully inside your perimeter. Hardware requirements and timelines depend on your setup; that's the first conversation we'll have.
Consolidated monthly invoicing in USD with standard payment terms. No crypto knowledge is required anywhere in your workflow. Usage across all your keys rolls up to one invoice, and your edition and committed-use terms apply automatically per your agreement.
Usually a few lines: our API is OpenAI-compatible, so most stacks only change the base URL and key. We'll help you map your current models to equivalents on our network and run a side-by-side evaluation before you commit traffic.
Tell us how you plan to use 0G Private Computer. Share your workload and priorities, and we’ll respond within one business day with pricing, architecture guidance, or an engineering session.