Old version
May 12, 2026 06:04 UTC
f92db422b115cc93fa8e41ade57183917c8c8a7ed64b900dda11e019afdddd73
CA-V-002500
New version
July 7, 2026 01:25 UTC
d45e50f5230bfd3990230249d248512a35b39d4ef37b2092c2f27909ca26bc35
CA-V-004577
Share 𝕏 Share in Share
Change Summary
Apple Intelligence updated its Apple Private Cloud Compute Security Guide on July 7, 2026 to reorganize and expand its presentation of security design principles. The document previously referenced security requirements within a general navigation structure. The updated guide now explicitly names and describes eight core architectural principles, including stateless computation, absence of privileged runtime access, non-targetability, verifiable transparency, hardware root of trust, hardware integrity, software foundations, and software layering. This change makes the security design rationale more structured and accessible to users and security researchers.
low severity
45 Sentences added
0 Sentences removed
2 Sentences modified
15 Sentences before
60 Sentences after
Added
Removed
Modified
BeforeAfter
11Get started with the Guide Start exploring the PCC design by learning about the extraordinary security requirements of the system.11Explore our Core Requirements Start exploring the PCC design by learning about the extraordinary security requirements of the system.
14For the full set of topics covered in the guide, see Navigating the Security Guide .14Topics Core Requirements Core Security & Privacy Requirements Dive into understanding PCC by learning about the extraordinary security requirements of the system.
15Stateless Computation and Enforceable Guarantees The PCC node is designed to safeguard user data and enforce that it is not retained once request processing is complete.
16No Privileged Runtime Access PCC is designed without privileged interfaces that might expose user data.
17Non-Targetability PCC is designed to ensure that an attacker cannot target specific PCC users.
18Verifiable Transparency Security researchers can verify the PCC privacy and security guarantees.
19Hardware and Software Hardware Root of Trust Custom-built server hardware ensures security properties are immutable.
20Hardware Integrity Hardware used for PCC is subject to rigorous security processes.
21Software Foundations PCC nodes run a purpose-built operating system designed for protecting user data.
22Software Layering The PCC node software is designed to ensure transparency of all components.
23Request Processing Request Flow Anonymous request routing helps ensure non-targetability.
24Attested Request Handling We designed the PCC application protocol to preserve client anonymity and efficiently route traffic through the PCC fleet.
25Runtime Configuration and Assets PCC supports runtime-configurable properties and cloud-distributed assets to manage node behavior during boot sessions.
26Transitive Trust PCC nodes establish transitive trust in other nodes by validating attestations on behalf of a user’s device.
27PCC Applications Stateless Inference The PCC inference engine enables high performance while keeping user data private.
28Private Filter Service Answers probabilistic membership queries from other PCC components without the queries leaving the trust boundary.
29PCC Agent PCC Agent executes application-specific workflows on proxy nodes, coordinating tool invocations across PCC nodes.
30Multi-Turn Agent The Multi-Turn Agent coordinates conversational and tool-using workflows over a persistent connection, with bounded cross-request state.
31Visual Lookup Privacy-preserving lookup of visual entities using embedding-based search and private information retrieval (PIR).
32Private Information Retrieval A cryptographic technique for retrieving data from servers outside the PCC trust boundary without revealing which records were accessed.
33Home Kit Secure Video Analysis The HomeKit Secure Video analysis workflow generates natural-language video descriptions and embeddings for HomeKit Secure Video recordings.
34Media Decoding A dedicated PCC worker decodes untrusted compressed video and images into pixel buffers, isolated from the workflows that consume them.
35Visual Generation PCC runs the Apple Diffusion Model to generate images.
36Embedding Generation An embedding tool that generates text and video embeddings.
37Speech Synthesis PCC Agent synthesizes spoken audio inside the PCC trust boundary.
38Transparency and Management Release Transparency PCC attestation capabilities support independently verifiable transparency.
39Management & Operations PCC nodes support privacy-aware management, observation, and debug capabilities.
40Security Analysis Anticipating Attacks How PCC’s security and privacy mechanisms stand up to anticipated threats.
41Source Code To simplify security research, source code is available for certain security-critical PCC components.
42Virtual Research Environment Virtual Research Environment Interact with and debug the PCC software stack.
43Get Started with the VRE Configure your system to run the PCC Virtual Research Environment (VRE).
44Interact with the VRE Issue requests to and configure the VRE.
45Research Variant Use the research variant to dive deeper into PCC.
46Shadow Tunneling Replace compute cloud apps with controllable proxies to exercise arbitrary behaviors in the VRE.
47Inspecting Releases Use the VRE tools to inspect releases in the transparency log.
48Reference Release Notes PCC Software Release Notes.
49Reporting Issues Reporting issues with Private Cloud Compute.
50Appendix: Secure Boot Tags The format of an Image4 manifest.
51Appendix: Trust Cache Format The internal structure of a TrustCache.
52Appendix: Secure Boot Ticket Canonicalization The construction of a release from an Image4 ticket.
53Appendix: System Configuration The node’s configuration parameters.
54Appendix: Runtime configuration consumers The daemons and services that consume configuration that you can update at runtime.
55Appendix: Attestation Bundle Contents The contents and validation of an attestation bundle.
56Appendix: Transparency Log The protocol for communication with the transparency log service.
57Appendix: Apple Intelligence Report The transparency data available on client devices.
58Appendix: Tool Gateway Protocol The wire formats and connection life cycle of the tool gateway protocol.
59Appendix: PCC Application Identifiers The cloud applications that run on PCC nodes, the identifiers they’re known by, and the cryptexes that distribute them.
Stay ahead of the changes

Watch this before it changes again

Follow unlimited companies, monitor the clauses that matter across every platform, and get the full institutional analysis on what each change obligates you to do.