secret.zoneSign in
A DIFFERENT DIMENSION OF COMPUTE

TheSecretZone

Deploy a workload. Inspect its evidence.
Know where the boundaries are.

Developer prototype · Built on dstack
PUBLIC RULES.PRIVATE EXECUTION.EVIDENCE YOU CAN INSPECT.
01 / THE PLATFORM

One computer.
A world of possibilities.

Secret.Zone is the product surface for Secret³: confidential machines coordinated by public rules. Begin with application hosting. Build toward something bigger.

NOT ON THIS DEPLOYMENT

Sites

A place for your website, with the deployment story close at hand.

MVP WORKFLOW

Apps

Your services and APIs, packaged in a familiar Compose file.

ON THE HORIZON

Agents

The vision: an agent with its own confidential workspace.

ON THE HORIZON

Storage

The vision: encrypted objects, shared through explicit policy.

02 / FROM AN IDEA TO AN INSTANCE

Familiar workflow.
A different foundation.

01

Bring your Compose

Use the App starter, under the name the operator has authorized. Review exactly what will be submitted; a changed Compose is refused by policy.

02

Give it a place

Submit to your configured compute host, then follow its status, logs and admission record.

03

Open the evidence

Open its record after signing in. See what was checked, where it came from, and what remains unknown.

OverviewWorkloadsAdmission
YOUR WORKSPACEILLUSTRATIVE PREVIEW

A little less mystery.

All of your workloads. One place to look.

observatorySample · running
midnight-apiSample · running
See the sample workspace, after signing in
03 / THE TRUST BOUNDARY

Less “trust us.”
More “see for yourself.”

The architecture separates public coordination, private execution and key custody. The prototype makes its progress visible: local policy, development workloads, and evidence with its limits attached.

Ledger integration, threshold custody, sealed secrets and hardware-backed end-to-end verification remain product gates. This prototype does not claim those guarantees.

Understand the model

A few things
before you step inside.

Is this a production cloud?

This is a working prototype interface. Live mode connects to a configured Zone service; demo mode uses clearly labelled sample data.

Do I need a wallet?

Yes. On this deployment every page but this one, the evidence pages included, needs a signature from a Secret Network wallet its operator has allowlisted. Signing sends no transaction and moves no funds.

What can I deploy?

The App starter, under a name the operator has authorized, on a development VMM. A changed Compose is refused by policy, with the reason on its record. This hosted prototype gives a workload no address of its own. Follow it through its status, its logs and its evidence page.

Where are pricing and custom domains?

Retail pricing and enclave-terminated naming are unfinished product work. A sample URL or dashboard does not implement either.

There’s a place
for what comes next.

Sign in to Secret.Zone

A prototype. Entry by allowlisted wallet.