Partners

Built on auditable foundations.

4 technical bricks, no opaque SaaS partnership. Every component is named, with its role. PrivateCore is not open-source software: it is built on open-source bricks.

  • 4technical bricks
  • 2open source
  • 1commercial
  • 1controlled proprietary

Apple

Hardware Controlled proprietary

The Mac Mini is the hardware foundation. macOS provides FileVault, Keychain, Time Machine and Developer ID signatures.

What it is

Apple supplies the machine, the OS and the cryptographic chain of trust. PrivateCore runs natively on Apple Silicon, without a VM or compatibility layer.

Why this choice

Apple Silicon delivers the best performance/watt on the market. Apple's controlled supply chain limits the risk of hardware backdoors. The Secure Enclave protects keys at the silicon level.

Official site ↗

Ollama

AI / Runtime Open source

The engine that runs the AI on the Mac mini: language and indexing models are served locally there.

What it is

Ollama is an open-source runtime that downloads GGUF/safetensors models and serves them via a local REST API. PrivateCore uses it for chat, mail classification, semantic search and OCR.

Why this choice

On the Mac mini, the AI runs on your hardware: by default, your documents and accounting data go to no AI provider. An outside service only switches on if you decide so, with your own key. The online plan runs no AI.

Official site ↗

Mistral AI

AI / Runtime Open source

French open-weight models, among those the Mac mini's AI can run via Ollama.

What it is

Mistral AI publishes the weights of several models, including Ministral. PrivateCore is not tied to one vendor: on each Mac, it picks among the installed models the one that performs best on the measured tasks (Mistral, Qwen, Gemma or Llama).

Why this choice

A European vendor whose weights are downloaded once: afterwards everything runs offline, with no quota and no usage cost.

Official site ↗

Tailscale

Network Commercial

Zero-config WireGuard mesh VPN, for the Mac mini plan. Links all your devices to your Mac through a private encrypted network.

What it is

Tailscale builds a peer-to-peer network overlay between your devices. Remote access to the Mac mini thus opens no port to the Internet, traffic flows directly between nodes, and authentication uses your identity (Google Workspace, Microsoft, GitHub, OIDC).

Why this choice

Secure remote access without static IP, DynDNS or NAT. The client code is open-source and you can self-host the coordinator (Headscale) if you want to take Tailscale itself out of the loop.

Official site ↗

Three commitments toward vendors

  • Named

    Every brick is named, with its role. The open-source bricks can be read line by line; the others are public, documented products.

  • No lock-in

    Your data exports in standard formats (CSV, PDF, FEC). With the Mac Mini, the machine and its data stay yours.

  • No hidden telemetry

    By default, no vendor receives your business data. An outside AI, never by default; only if you decide so, with your own key.

No opaque SaaS partnership. Every brick is named, and your data exports whenever you want.

Ready to take back control?

A bespoke install, an answer from the founder, and a Mac Mini you buy yourself or we deliver configured.