void
decrypting…
encrypted · live 1,844 jobs today run a job
confidential ai · mainnet

compute onwhat you can't see.

Void is a confidential AI network — run models on encrypted data with fully homomorphic encryption and zero-knowledge proofs, so prompts, data, and model weights stay hidden even from the nodes that compute them.

1,844 jobs today · 42.7M proofs · avg proof 1.2s

● liveblind compute · job #8841fhe · zk
in · ciphertext0x9f3a 7c1e 44b2 a0d5 88e7
⟶ compute on encrypted data ⟶
out · ciphertext0x31e8 b04f 92c7 d1a3 5f90
proof✓ zk-snark · 0x…e9d2 · 1.2s
model med-gpt-7bseen by nodes 0 times
0x9f3a…a0d5 · proof ✓0x31e8…5f90 · proof ✓0x44b2…c7d1 · proof ✓0x7c1e…d1a3 · proof ✓0x88e7…b04f · proof ✓0xa0d5…92c7 · proof ✓0x9f3a…a0d5 · proof ✓0x31e8…5f90 · proof ✓0x44b2…c7d1 · proof ✓0x7c1e…d1a3 · proof ✓0x88e7…b04f · proof ✓0xa0d5…92c7 · proof ✓
the cipher

your data never
leaves the void.

Fully homomorphic encryption means a node can run a model on your input without ever seeing it. The words below are encrypted — and the network still computed on them.

cipherboard · aes-256 + tfhekey: —redacted—
the diagnosis is stage one, treatable. transfer $12,400 to the escrow account. this weight set was trained on private data. the agent should not reveal the secret.
computed · no plaintext ever exposedproof ✓ verified
proofs / live

every job
comes with a receipt.

Each confidential job mints a zero-knowledge proof — the input, the model, and the output, verifiable by anyone, readable by no one.

proofs · last 60s● verifying
med-gpt-7b · 0x…e9d21.2s✓
fin-llm-3b · 0x…41c80.9s✓
agent-r1 · 0x…b7a42.1s✓
vision-v2 · 0x…d0f61.7s✓
proofs verified 42.7Mfalse proofs 0
how it works

encrypt, compute,
prove, verify.

01

encrypt

you encrypt your prompt, your data, and the model — locally, with your key.

cipher/fhe
02

compute

nodes run the model on the ciphertext. they never see a single plaintext bit.

compute/run
03

prove

a zk-snark proves the computation was correct — without revealing the inputs.

cipher/proofs
04

verify

anyone checks the proof. only you can decrypt the result.

build/attestation
the network

2,318 nodes,
zero plaintext.

A global mesh of enclaves runs encrypted jobs and proves their work. No single node ever sees a full input, a full weight set, or a full output.

live topology · 2,318 enclavesregions 31 · avg uptime 99.97%
the enclave

the hardware
sees nothing.

Void runs on real enclaves — verified hardware that computes on ciphertext, inside racks no operator can read.

1,844jobs today
42.7Mproofs verified
2,318enclaves
0plaintext bits seen
on the ground

the enclave,
in hardware.

Photos via Pexels, credited below.

roadmap

where the
void is going.

now
v0.4

confidential inference + zk-snark receipts live

q3 2026
encrypted fine-tuning

tune a model on data the trainer never reads

q4 2026
multi-party compute

n parties compute on shared secrets, none of them see all

2027
void protocol v1

permissionless enclaves + $VOID staking on chain

faq

short
answers.

is this really private?

Yes. Fully homomorphic encryption lets nodes compute on ciphertext directly — they process your data without ever decrypting it. The zero-knowledge proof then shows the computation was correct, still without revealing the input.

what can I run?

Any model that fits the enclave. Today that's up to 7B parameters for inference; encrypted fine-tuning and multi-party compute are on the roadmap.

how is a wrong result caught?

Every job mints a zk-snark. If a node fakes an output, the proof won't verify, the node loses its stake, and the job reruns on honest enclaves.

who can see my data?

Only you, with your key. Not the nodes, not the protocol, not the network operator. Void is designed so the operator can't read your traffic even if they wanted to.

the model never
sees the secret.

Run AI on the data you could never hand over. Everything else is just a server.