Your agent works for you.
Not for us.

That's by design.

Every conversation, every memory, every file lives in your agent's isolated space. We can't see it. We can't read it. We can't sell it.

Your agent works for you — not for us, not for advertisers, not for training.

An AI agent's private workspace

Memory, browser, tools, knowledge — all inside.

Our commitments

Your space is your vault

Separate AI, separate storage, separate memory. Encrypted in transit and at rest. Your agent's memory belongs to you and lives in your private space.

Never used for training

Your conversations are never used to train AI models. Not by us, not by our providers. We contractually require this.

You own everything

Export your data anytime. Delete it anytime. Your agent's memory, files, and history are yours. We host it. You own it.

Portal One+ architecture — a grid of isolated agent workspaces

Every room is different. None of them connect.

Privacy is the architecture.

This is how Portal One+ works. Every user gets their own sealed space — their own AI, their own browser, their own storage. Your agent's world never touches anyone else's.

Separate by design.

How isolation works under the hood

Per-user sandbox. Every user gets their own Docker container. One user's code can't see or touch another's.

Per-user browser. Your web sessions are invisible to every other user and to the platform.

Per-user memory. Your agent learns from its own notes in your workspace, not from a shared database.

Internal access requires founder approval. Our team can't read user data without a real-time approval sent to a founder's phone. Every request is logged permanently.

AI providers and how they handle your data

Your agent uses AI models from Anthropic, Google, and AWS to generate responses. Each provider receives your message and enough context to respond. Nothing more.

None of them train on your data. We contractually require this from every provider.

Payments are processed by Stripe. We never see or store your card number.

Your data. Your call.

See what's stored. Take it with you. Or erase it completely.

Export everything

Download all conversations, memories, and files your agent created.

Delete everything

Permanently gone within 30 days. Unrecoverable by anyone, including us.

See what's stored

Data size, sessions, energy usage, subscription — all visible to you.

Cancel anytime

No retention tricks. Your access continues until the period ends.

Our users trust their agents with the most personal parts of their lives. We built Portal to deserve that.