Skip to content

BlindBox is a tool to isolate and deploy applications inside Trusted Execution Environments for privacy-by-design apps

License

Notifications You must be signed in to change notification settings

mithril-security/blindbox

Folders and files

NameName
Last commit message
Last commit date

Latest commit

 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 

Repository files navigation

Contributors Forks Stargazers Issues Apache License


Logo

Blindbox

Website Blog LinkedIn

Quickly deploy your SaaS solutions while preserving your users' data privacy.

Explore the docs »

Get started · Report Bug · Request Feature

Table of Contents
  1. About The Project
  2. Getting Started
  3. Getting Help
  4. Why trust us?
  5. License
  6. Contact

🔒 About The Project

BlindBox is a privacy deployment solution for SaaS applications which preserves the data confidentiality of end users, even from the software provider. To guarantee that privacy, we deploy those applications within hardware based, highly-isolated environments, a technology often referred to as confidential computing.

⚠️ WARNING: BlindBox is still under development. Do not use in production!

🗝️ Key features:

  • A CLI tool to deploy application images within BlindBox. We currently support Docker and we are working on other formats, like Kubernetes.

  • Applications are deployed within Confidential VMs, a type of confidential computing environment, which support additional security verifications.

  • An isolation layer to define custom security policies for the application inside the enclave. This will include selecting who can query the service running in the BlindBox and the range of networking access allowed within.

You can check out the project code on our GitHub.

(back to top)

🚀 Getting Started

We recommend for you to get started with our Quick tour!

🙋 Getting help

❓ Why trust us?

  • Our core security features are open source. We believe that transparency is the best way to ensure security and you can inspect the code yourself on our GitHub page.

  • Our historical project BlindAI was successfully audited by Quarkslab. Although both projects differ (BlindAI was meant for the confidential deployment of ONNX models inside Intel SGX enclaves), we want to highlight that we are serious about our security standards and know how to code secure remote attestation.

📜 License

Distributed under the Apache License, version 2.0. See LICENSE.md for more information.

📇 Contact

Mithril Security - @MithrilSecurity - contact@mithrilsecurity.io

Project Link: https://github.com/mithril-security/blindbox

(back to top)