Local by default
Engineering files, prompts, paths, tool parameters and results, sessions, checkpoints, and local knowledge remain on the customer workstation or AI BOX.
ENFORCED BY ARCHITECTUREPHYMER separates customer engineering context from vendor capability delivery, then makes each allowed crossing explicit and verifiable.
Engineering files, prompts, paths, tool parameters and results, sessions, checkpoints, and local knowledge remain on the customer workstation or AI BOX.
ENFORCED BY ARCHITECTURECapabilities are requested individually and checked for signature, type, version, stable identity, and content digest before use.
ENFORCED BY ARCHITECTUREDevices and capabilities require scoped authorization. Missing, expired, revoked, or incompatible authority fails closed.
ENFORCED BY ARCHITECTUREConnection loss does not imply a physical operation stopped. Ownership, state, and human confirmation govern recovery.
ENFORCED BY ARCHITECTURECloud-side records are limited to product and capability identity, authorization state, randomized request identifiers, version, timing, and fixed metering facts.
ENFORCED BY ARCHITECTUREState-changing or high-risk work exposes an approval step; computational completion is not physical validation or production approval.
ENFORCED BY ARCHITECTURECUSTOMER ENVIRONMENT
VENDOR CLOUD
HONEST LIMIT
Cryptographic delivery, transport security, memory-only handling, and sanitized releases reduce ordinary leakage and tampering risk. They do not promise absolute resistance against an actor with root or physical control of customer hardware.