The Confidential Runtime.

A universal abstraction layer for Intel SGX and AMD SEV. Run any container, securely, without code changes.

LAYER 1

The Enclave

Hardware-isolated memory region. Encrypted by CPU keys. Inaccessible to the host OS.

LAYER 2

Gramine LibOS

Translates Linux syscalls to SGX instructions. Allows standard binaries to run unmodified.

Multi-Architecture

Support for both Intel SGX (Ice Lake) and AMD SEV-SNP. We abstract the hardware differences so you deploy once.

Automatic Attestation

Our sidecar proxy handles the cryptographic handshake and key exchange automatically before your app starts.

Managed Kubernetes

Deploy via standard Helm charts to our managed AKS clusters in Zurich. No custom orchestrators needed.