Provider Directory

Confidential
Inference

Compare providers running AI inference inside trusted execution environments. Filter by models, pricing, and API features.

8 providers

Chutes

TEE-only Gateway

Decentralized confidential inference on Bittensor with TEE

Storefront · Aggregator · Workload operator · TEE platform
Models 14
From $0.02/M
OpenAI API Streaming Functions Vision

NanoGPT

TEE-only Gateway

Pay-per-prompt confidential inference — TEE-backed models with ECDSA per-request attestation

Storefront · Aggregator
Models 27
From $0.15/M
OpenAI API Streaming Functions Vision

NEAR AI

Attested E2EE

Private, verifiable AI — Intel TDX + NVIDIA H200 TEE with on-chain attestation

Storefront · Aggregator
Models 14
From $0.01/M
OpenAI API Streaming Functions Vision

PPQ.AI

Attested E2EE

Private TEE inference via hardware-attested confidential compute

Storefront · Aggregator
Models 5
From $0.16/M
OpenAI API Streaming Functions Vision

Privatemode

Attested E2EE

EU-hosted confidential inference via Cosmian VM

Storefront · Workload operator · TEE platform
Models 7
From $0.15/M
OpenAI API Streaming Functions Vision

Redpill

Attested E2EE

OpenAI-compatible confidential inference across attested GPU TEE routes

Storefront · Aggregator · Router
Models 2
From $0.15/M
OpenAI API Streaming Functions Vision

Tinfoil

TEE-Terminated TLS

Verifiable private inference with Intel TDX and NVIDIA H100 CC

Storefront · Router · Workload operator · TEE platform
Models 13
From $0.05/M
OpenAI API Streaming Functions Vision

Venice.ai

Attested E2EE

End-to-end encrypted private AI with TEE attestation

Storefront · Aggregator
Models 13
From $0.05/M
OpenAI API Streaming Functions Vision

Disclosure log

Tracked, not comparable

These providers make relevant confidential-inference claims, but do not currently expose enough working, public evidence to join the model and pricing comparison above.

io.net

No active confidential models
Website ↗
Observed
The documentation advertises confidential inference, but the authenticated catalog returned 28 active models and 0 with attestation enabled. Every model also had an empty attestation endpoint.
Required for comparison
At least one priced model must return fresh, independently verifiable hardware evidence from the documented private inference route.

Maple

Website ↗
Observed
Maple requires a paid subscription before the live model catalog and API can be accessed. Without an account, current models and prices cannot be independently refreshed from an official endpoint.
Required for comparison
Maple must expose a public model and pricing source, or the directory needs a working subscription that can query the live catalog.