Security & Privacy
Your work stays on your computer.
That is not a feature. It is the architecture.
Virgil is built so that your data never has to trust us. Here is exactly how.
01
Local-first by default
Your projects, workspaces, and every file in them live on your own computer. There is no Virgil server holding your project files. There is no cloud sync you have to trust. When you close the app, your data is right where you left it: in a folder on your machine.
This is not an opt-in privacy mode. It is how the product works. There is no toggle because there is nothing to turn off.
02
Bring your own keys
Virgil connects directly to your own account with your AI provider. Your content travels from your computer to your provider under your agreement with them. It does not pass through our servers.
We never see your API keys. They are stored locally on your machine in your key vault, scoped to each project. If you switch providers or revoke a key, that is between you and your provider. We are not in the path.
03
Project-scoped custody
Every project is a walled workspace. Virgil can only see what you added or granted access to inside that project. There is no pathway to the rest of your computer, your other projects, or anyone else's work.
Integrations attach to a project, not to your account. If you connect a service to one project, your other projects cannot see it. We call this custody: Virgil can only touch what you handed this project.
04
Audit receipts on every edit
Every project logs whether an edit was made by you or by AI. This is not optional and cannot be turned off. When you hand a finished deliverable to a client, a boss, or a regulator, the record is there: who did what, and when.
Guest collaborators get the same treatment. If someone joins your project on a Guest Pass, their edits and their AI usage are logged separately from yours. Full attribution, no ambiguity.
05
No training on your data
We never train AI models on your content. When you use your own key, your provider's data policy applies and most major providers do not train on API traffic. When you use Virgil Engine, we route through zero-data-retention endpoints and have opted out of any option that would grant usage rights over your content.
06
Plain files you can take anywhere
Every tool in Virgil stores its state as a plain file in your workspace: board.json, doc.md, table.json, deck.json. There is no proprietary database. If you stop using Virgil tomorrow, your files are still yours, in standard formats, on your machine. Export to .docx, .xlsx, .pptx, or just open the raw files.
Infrastructure
Website and accounts
Our website and account system are hosted on Vercel with TLS encryption on every connection. Authentication is handled by Supabase. Payments are processed by Stripe. We never see or store your card number.
Desktop app
The Virgil desktop app is code-signed and notarized by Apple. Updates are delivered through secure channels. All API calls from the app to your AI provider use TLS encryption.
What we log
Basic usage events like "a session was started" so we can improve the product. Error reports go to Sentry so we can fix bugs. These are about the product, not about your files. No advertising trackers. No third-party analytics.
If something goes wrong
If you discover a security issue, or if something feels off, email hello@hirevirgil.com with the subject line "Security." A human answers, and we treat every report seriously.
Because your projects live on your machine and your keys are stored locally, a breach of our systems would not expose your project files or your API keys. That is the point of the architecture.
For the full legal details, see our Privacy Policy and Terms of Service.
Built for people who need to trust their tools.
Your files. Your keys. Your machine. Start free.