Security
Ĝi is designed so that your questions and notes stay on your computer.
How Ĝi protects you
- It connects only to the model server you configure; other computers need an explicit
allow_remote = true. - An API token is sent only to local or private network addresses, never to the internet.
- Proxy settings are ignored and redirects are not followed, so requests can't be diverted.
- Model answers are treated as untrusted: terminal control sequences are removed before printing.
- Ĝi has no tools and can't act on your system; a model reply that tries to call a tool is refused.
- Your workspace is private (mode 0700) and its log is hash-chained, so tampering is detected by
gi selfcheck.
Verify what you install
- The package source is signed with the project key
Vadim Bley <maintainer@gi-ai.app>. Its fingerprint is D523 F5BF 268D FD9F CD08 2391 E1B6 1810 1C64 54A0. - Download the key: https://gi-ai.app/apt/gi-ai.asc,
or look it up by its address (Web Key Directory):
Either way, compare the fingerprint above.gpg --locate-keys maintainer@gi-ai.app - Every release on GitHub has a
SHA256SUMSfile and a signed build attestation:gh attestation verify gi-ai_VERSION_all.deb --repo VadimBley/gi-ai
Report a vulnerability
Please report security problems privately through GitHub's private vulnerability reporting, not by email or in public. See also security.txt.
Report a bug
Other bugs: bugs@gi-ai.app. Please include your Ĝi version (gi --version) and what you did.