Blindproof

Why now

AI now handles private, high-stakes work. Nothing on Bittensor can do that safely yet.

Individuals need AI that can’t spy on them. Enterprises need AI they can check. Blindproof does both.

Individuals

What you tell an AI isn’t private.

People ask AI about their health, money, family, and legal problems. The company running the AI can read every word, keep it, and learn from it.

A court case this year showed what that can cost you.

On Blindproof, the computers answering you never see your words. So your chats can’t be:

  • Read
  • Sold
  • Used for training
  • Handed over

Blindproof doesn’t make an AI your lawyer, and chats saved on your own devices are still yours to protect. What it removes is the company in the middle that can read them.

Enterprises

Enterprises can’t use Bittensor for real work yet. Three things are missing.

Same answer, every time

TodayThe same job can give different answers on different machines.

BlindproofEvery machine gives the exact same answer, so checking one is easy.

Measured

Proof the work is right

TodayMiners get paid on trust.

BlindproofMiners get paid only after the work is proven.

Prototype

Privacy

TodayMiners can read your data.

BlindproofMiners only ever see scrambled data.

Research

AI is making real decisions

Loans, compliance, legal review. Those get audited.

“Secure” chips were cracked

In 2026, researchers pulled prompts out of protected hardware.

Bittensor needs paying customers

Enterprises only pay for work they can check and keep private.

One network for both: private for individuals, provable for enterprises.

Measured

Same answer every time

Measured across GPU types. Settled on Bittensor testnet.

Prototype

Proven

Shown on testnet with test proofs. Real proofs are next.

Research

Private

Working in the lab. Joins the network after proofs.