Fully local processing
With local models and locally operated services, no operational content leaves your company network.
On-Premise · Private AI · Data Sovereignty
Self-hosted on your infrastructure. Company knowledge, processing, and optionally AI inference remain inside your network.
Access starts with you. Identity and permissions.
Local data flows
Data sources, permission checks, knowledge retrieval, and local AI form a controlled path inside your infrastructure. External endpoints are added only when you explicitly enable them.
Emails, files, and company knowledge remain on your infrastructure.
Roles, ACLs, and organization context determine which information is available.
The application processes only the context authorized for each request.
A self-hosted AI model can perform inference inside your network.
The answer uses only information the requesting user is allowed to access.
With local models and locally operated services, no operational content leaves your company network.
If you choose external models, only requests configured by you are transmitted to that endpoint.
Security by Architecture
Access is not decided by a badge. It is enforced technically in every relevant data operation.
The application, data layer, and local AI components reside in infrastructure controlled by you.
Customer-controlled infrastructureData queries are consistently restricted to the active organization context.
Organization-scoped queriesRoles and capabilities govern administrative and organizational permissions.
RBAC · CapabilitiesAccess is additionally evaluated by user, owner, project, and permission level.
User · Owner · Project · RoleOrganization and document permissions are applied during knowledge retrieval.
ACL filtering before generationAdministrative and knowledge-related activities are captured in audit and activity logs.
Local audit dataPrivate AI
You decide where inference takes place, which endpoints are reachable, and whether the AI path remains fully local.
Supported AI models can run within your own infrastructure.
Inference on your infrastructureYou choose the model, endpoint, and network rules that apply to it.
Customer-selected endpointWith fully local models and services, no operational content leaves your network.
Fully local configurationExternal models are accessed only through endpoints you explicitly configure and approve.
Explicit outbound pathKnowledge processing, vector search, and permission filtering can run on your infrastructure.
Local knowledge stackAI access remains decoupled from a single model vendor and can be adapted to your environment.
Configurable model accessIdentity & Access
chifty considers organization boundaries and existing access rights when selecting relevant information.
Every relevant request is associated with an active organization and user context.
Administrative actions require the appropriate role and specifically assigned capability.
Projects, lists, documents, and content can carry additional user and owner permissions.
Unauthorized knowledge entries are filtered during search, before the AI generates an answer.
Encryption & Application Security
We state the actual scope of every measure rather than making blanket security claims about all data.
Browser and application connections are protected by TLS during transmission.
Encrypted in transitIMAP passwords as well as booking and appointment tokens are stored with authenticated encryption.
Scoped credential encryptionLocal passwords are hashed with Argon2id and are not stored in plain text.
Memory-hard password hashingDatabase access uses parameterized queries rather than client-composed SQL input.
No client-built SQLTokens, cookies, and authorization headers are filtered from application logs.
Sensitive log controlsOn-premise activation is verified locally and requires no ongoing connection to chifty.
No license server requiredOperational Control
On-premise does more than reduce data flows. It gives you control over operations and dependencies.
After setup, there is no ongoing data exchange with chifty servers.
The network, storage, database, and runtime environment remain under your control.
You decide when supplied updates are installed within your operating processes.
With local AI, external AI and hosting providers are removed from the operational data path.
Your data and installation remain in your environment, even without ongoing vendor availability.
Private AI by design
Use AI with enterprise access control and local data processing—on your infrastructure and under your rules.