[
  {
    "id": "rca-claude-code",
    "date_added": "2026-06-21",
    "name": "Claude Code",
    "vendor": "Anthropic",
    "type": "cli",
    "openness": "commercial",
    "deployment": "cloud",
    "model_backend": "Claude (Anthropic own models); optionally routed via Amazon Bedrock, Google Vertex AI, or Microsoft Azure Foundry",
    "data_handling": "zdr",
    "data_handling_note": "Consumer training depends on the user's data-use setting rather than being universally on: retention is up to 5 years when model improvement is enabled and 30 days when disabled. Commercial Claude/API data is not used for training by default. Approved Enterprise organizations and eligible API configurations can receive Zero Data Retention, but remote/web sessions and third-party integrations require separate scope review. Claude Code also stores local plaintext transcripts under ~/.claude/projects/ for 30 days by default.",
    "capability": "frontier",
    "backend_dependent": false,
    "suitability": {
      "nonsensitive": "ok",
      "personal": "cfg",
      "special": "no"
    },
    "suitability_notes": {
      "personal": "Use a commercial plan with a signed DPA and confirm that the exact Claude Code surface is covered by the retention agreement; review and protect local plaintext transcripts.",
      "special": "Cloud inference means data leaves controlled infrastructure. Do not use for identifiable or controlled-access health/genetic/clinical data under this index's strict rule."
    },
    "compliance": [
      "SOC 2 Type II",
      "ISO 27001:2022",
      "ISO/IEC 42001:2023",
      "HIPAA BAA (enterprise, on request)",
      "GDPR"
    ],
    "pricing": "Free (limited) - Pro $20/mo - Max $100-200/mo - Team Premium $150/seat/mo - Enterprise custom; Education/university plan available for institutions (contact sales)",
    "academic": "Education plan available for universities (students, faculty, staff) at discounted rates; academic research credit programs available - contact sales@anthropic.com",
    "use_cases": [
      "coding",
      "data analysis",
      "CI/CD automation",
      "agentic repo-scale workflows",
      "multi-agent orchestration"
    ],
    "runs_locally": false,
    "links": {
      "docs": "https://code.claude.com/docs/en/overview",
      "pricing": "https://claude.com/pricing",
      "privacy": "https://privacy.claude.com/en/"
    },
    "notes": "Claude Code spans CLI, IDE, desktop, web, and remote surfaces. Retention and ZDR scope must be checked for the exact surface and integration; local transcripts are a separate governance boundary.",
    "sources": [
      "https://code.claude.com/docs/en/data-usage",
      "https://code.claude.com/docs/en/zero-data-retention",
      "https://code.claude.com/docs/en/legal-and-compliance",
      "https://privacy.claude.com/en/articles/10015870-what-certifications-has-anthropic-obtained"
    ],
    "status": "active",
    "current_name": "Claude Code",
    "confidence": "high",
    "verified": "2026-07-13",
    "established": true,
    "tier_gate": "approved Enterprise organization or eligible API ZDR configuration",
    "date_modified": "2026-07-13",
    "software_license": null,
    "license_status": "proprietary",
    "special_route": {
      "status": "not-appropriate",
      "boundary": "none",
      "inference": "none",
      "required_controls": [],
      "residual_risks": [
        "Cloud inference means data leaves controlled infrastructure. Do not use for identifiable or controlled-access health/genetic/clinical data under this index's strict rule."
      ]
    }
  },
  {
    "id": "rca-openai-codex",
    "date_added": "2026-06-21",
    "name": "OpenAI Codex",
    "vendor": "OpenAI",
    "type": "cloud",
    "openness": "commercial",
    "deployment": "cloud",
    "model_backend": "GPT-5.6 Codex family (availability changes over time; OpenAI proprietary)",
    "data_handling": "zdr",
    "data_handling_note": "API, ChatGPT Business, Enterprise, and Edu do NOT train on user data by default. API data retained up to 30 days for abuse monitoring then deleted. Zero Data Retention (ZDR) available for eligible enterprise customers on supported endpoints - not self-serve, requires OpenAI account team enablement. Consumer ChatGPT Free/Plus may use data to train unless opted out. EU data residency available for eligible enterprise contracts.",
    "capability": "frontier",
    "backend_dependent": false,
    "suitability": {
      "nonsensitive": "ok",
      "personal": "cfg",
      "special": "no"
    },
    "suitability_notes": {
      "personal": "Use ChatGPT Business/Enterprise or API tier (no training by default) plus sign a DPA; do not use consumer Free/Plus without opting out of data sharing. ZDR available for enterprise via account team.",
      "special": "Cloud-only, no self-hosting or air-gap option. Even with ZDR and HIPAA BAA (enterprise), data transits OpenAI cloud infrastructure - not suitable for special-category health/genetic data under GDPR."
    },
    "compliance": [
      "SOC 2 Type 2",
      "ISO 27001 (ISO/IEC 27001:2022)",
      "ISO 27701",
      "GDPR (DPA available)",
      "HIPAA BAA (enterprise eligible endpoints)",
      "FERPA",
      "CCPA"
    ],
    "pricing": "Included with eligible ChatGPT plans; ChatGPT Business is $20/user/month annually or $25 monthly. New Codex-only Business seats stopped being offered June 24, 2026; existing eligible workspaces may retain them. API usage is metered separately.",
    "academic": "$100 in Codex credits for verified university students in US and Canada (one-time, expires 12 months). ChatGPT Edu plan for institutions (custom pricing).",
    "use_cases": [
      "agentic software engineering",
      "code generation",
      "bug fixing",
      "code review",
      "codebase Q&A",
      "test writing",
      "refactoring",
      "security vulnerability scanning",
      "CI/CD automation"
    ],
    "runs_locally": false,
    "links": {
      "docs": "https://learn.chatgpt.com/docs",
      "pricing": "https://learn.chatgpt.com/docs/pricing",
      "privacy": "https://openai.com/business-data/"
    },
    "notes": "Current Codex is OpenAI's multi-surface coding agent, distinct from the retired 2021 code-completion models. Product versions, model availability, and seat packaging are dynamic; use the dated sources rather than retained user-count or CLI-version claims.",
    "sources": [
      "https://developers.openai.com/api/docs/guides/your-data",
      "https://openai.com/business-data/",
      "https://openai.com/business/pricing/",
      "https://openai.com/index/codex-flexible-pricing-for-teams/",
      "https://help.openai.com/en/articles/20001147-codex-credits-for-students-terms-of-service"
    ],
    "status": "active",
    "current_name": "OpenAI Codex",
    "confidence": "high",
    "verified": "2026-07-13",
    "established": true,
    "tier_gate": "API / Business+ (not consumer)",
    "date_modified": "2026-07-13",
    "software_license": null,
    "license_status": "proprietary",
    "special_route": {
      "status": "not-appropriate",
      "boundary": "none",
      "inference": "none",
      "required_controls": [],
      "residual_risks": [
        "Cloud-only, no self-hosting or air-gap option. Even with ZDR and HIPAA BAA (enterprise), data transits OpenAI cloud infrastructure - not suitable for special-category health/genetic data under GDPR."
      ]
    }
  },
  {
    "id": "rca-gemini-cli",
    "date_added": "2026-06-21",
    "name": "Gemini CLI",
    "vendor": "Google",
    "type": "cli",
    "openness": "open-source",
    "deployment": "local CLI / cloud inference",
    "model_backend": "Gemini models via paid API, Vertex AI, or Gemini Code Assist; consumer access is transitioning to the separate Antigravity CLI product",
    "data_handling": "no-train",
    "data_handling_note": "The Apache-2.0 Gemini CLI remains an active open-source client with enterprise-supported paid API, Vertex AI, and Code Assist routes. Unpaid consumer use may be used for product/model improvement unless the user opts out; paid Gemini API, Vertex AI, and enterprise Code Assist do not train on customer data. Consumer migration to Antigravity CLI does not rename or close the Gemini CLI project.",
    "capability": "frontier",
    "backend_dependent": true,
    "suitability": {
      "nonsensitive": "ok",
      "personal": "cfg",
      "special": "no"
    },
    "suitability_notes": {
      "personal": "Use paid Gemini API key or Vertex AI (no-train) + EU region pinning (Vertex). Free/consumer tier trains on data - not suitable for personal data.",
      "special": "Cloud-only. ZDR / HIPAA-BAA is a contractual assurance, but data still leaves your environment — not appropriate for identifiable or controlled-access (DUA) health/genetic data. Use a tool that runs on infrastructure you control, and confirm with your DPO / IRB."
    },
    "compliance": [
      "SOC 2",
      "SOC 3",
      "ISO 27001",
      "GDPR",
      "EU data residency (Vertex AI)",
      "HIPAA BAA (Google Cloud eligible services)"
    ],
    "pricing": "Open-source CLI is free; model use follows Gemini API, Vertex AI, or Code Assist quotas and pricing. Consumer Google-account access is transitioning to the separate Antigravity CLI product.",
    "academic": "No dedicated academic/student discount program identified; free tier (now Antigravity) available to any Google Account but carries training-data risk.",
    "use_cases": [
      "coding",
      "terminal automation",
      "multi-step agentic workflows",
      "code review and refactoring",
      "shell command orchestration"
    ],
    "runs_locally": false,
    "links": {
      "docs": "https://github.com/google-gemini/gemini-cli",
      "pricing": "https://google-gemini.github.io/gemini-cli/docs/quota-and-pricing.html",
      "privacy": "https://google-gemini.github.io/gemini-cli/docs/tos-privacy.html"
    },
    "notes": "Keep Gemini CLI and Google Antigravity as separate records: Gemini CLI remains an Apache-2.0 client for paid API/Vertex/enterprise use, while consumer access is moving to the proprietary Antigravity CLI.",
    "sources": [
      "https://developers.googleblog.com/an-important-update-transitioning-gemini-cli-to-antigravity-cli/",
      "https://github.com/google-gemini/gemini-cli/discussions/27274",
      "https://google-gemini.github.io/gemini-cli/docs/tos-privacy.html",
      "https://google-gemini.github.io/gemini-cli/docs/quota-and-pricing.html"
    ],
    "status": "active",
    "current_name": "Gemini CLI",
    "confidence": "high",
    "verified": "2026-07-13",
    "established": false,
    "tier_gate": "paid API / Vertex (free tier trains)",
    "date_modified": "2026-07-13",
    "software_license": "Apache-2.0",
    "license_status": "confirmed",
    "special_route": {
      "status": "not-appropriate",
      "boundary": "none",
      "inference": "none",
      "required_controls": [],
      "residual_risks": [
        "Cloud-only. ZDR / HIPAA-BAA is a contractual assurance, but data still leaves your environment — not appropriate for identifiable or controlled-access (DUA) health/genetic data. Use a tool that runs on infrastructure you control, and confirm with your DPO / IRB."
      ]
    }
  },
  {
    "id": "rca-aider",
    "date_added": "2026-06-21",
    "name": "Aider",
    "vendor": "Aider-AI (open-source, Apache-2.0)",
    "type": "cli",
    "openness": "open-source",
    "deployment": "local-capable",
    "model_backend": "BYO key - local model (Ollama, etc.) or any cloud API (OpenAI, Anthropic, Google, DeepSeek, xAI, etc.)",
    "data_handling": "local",
    "data_handling_note": "Aider itself never collects user code, chat messages, or API keys. Analytics are strictly opt-in and cover only anonymous usage stats (no code). When paired with a local model the data never leaves the machine. When paired with a cloud API, privacy follows that provider's policy. No SOC 2, HIPAA, or GDPR certifications exist for Aider itself - compliance is entirely determined by the chosen LLM backend.",
    "capability": "strong",
    "backend_dependent": true,
    "suitability": {
      "nonsensitive": "ok",
      "personal": "cfg",
      "special": "cfg"
    },
    "suitability_notes": {
      "personal": "Use a fully local model, or a cloud provider covered by an appropriate DPA and no-training terms; Aider itself is not the processor for cloud inference.",
      "special": "Requires a fully local model on controlled infrastructure. Any cloud-model configuration moves data outside that boundary and is not acceptable under this index's strict rule."
    },
    "compliance": [
      "self-hosted"
    ],
    "pricing": "Free (open source, Apache-2.0); user pays their chosen LLM provider directly - Aider charges nothing",
    "academic": "free",
    "use_cases": [
      "coding",
      "pair programming",
      "automated git commits",
      "multi-model workflows",
      "test-driven development",
      "data analysis"
    ],
    "runs_locally": true,
    "links": {
      "docs": "https://aider.chat",
      "pricing": "https://github.com/Aider-AI/aider",
      "privacy": "https://aider.chat/docs/legal/privacy.html"
    },
    "notes": "Open-source pair-programming CLI whose capability and data boundary depend on the configured model. Analytics are opt-in and exclude code, chat, and API keys; remove volatile popularity/version counts from maintenance claims.",
    "sources": [
      "https://aider.chat/docs/legal/privacy.html",
      "https://aider.chat/docs/more/analytics.html",
      "https://github.com/Aider-AI/aider"
    ],
    "status": "active",
    "current_name": "Aider",
    "confidence": "high",
    "verified": "2026-07-13",
    "established": true,
    "tier_gate": "",
    "date_modified": "2026-07-13",
    "software_license": "Apache-2.0",
    "license_status": "confirmed",
    "special_route": {
      "status": "config-required",
      "boundary": "customer-controlled",
      "inference": "local-only",
      "required_controls": [
        "Requires a fully local model on controlled infrastructure. Any cloud-model configuration moves data outside that boundary and is not acceptable under this index's strict rule."
      ],
      "residual_risks": [
        "Conditional route: revalidate the exact deployment, model endpoint, integrations, telemetry, and institutional approval before use."
      ]
    }
  },
  {
    "id": "rca-goose",
    "date_added": "2026-06-21",
    "name": "Goose",
    "vendor": "AAIF / Linux Foundation (originally Block; donated to Agentic AI Foundation in Dec 2025)",
    "type": "cli",
    "openness": "open-source",
    "deployment": "local-capable",
    "model_backend": "BYO key - 40+ providers: local (Ollama, LM Studio, Docker Model Runner) or cloud (Anthropic, OpenAI, Google, Azure, Bedrock, etc.)",
    "data_handling": "local",
    "data_handling_note": "Goose can use local models with all prompts/code kept on-device, or cloud providers under their own terms. Usage-data collection is offered at first use and the documented default is disabled; it covers operational metadata, not code or prompts. No project-level DPA or clinical certification replaces assessment of the selected model route.",
    "capability": "strong",
    "backend_dependent": true,
    "suitability": {
      "nonsensitive": "ok",
      "personal": "cfg",
      "special": "cfg"
    },
    "suitability_notes": {
      "personal": "Prefer a fully local model, or use a cloud provider only under an appropriate DPA/no-training agreement. Keep optional usage-data collection disabled.",
      "special": "Requires a fully local model on controlled infrastructure. Keep optional usage-data collection disabled; cloud model routes are not acceptable."
    },
    "compliance": [
      "self-hosted",
      "Apache-2.0",
      "Linux Foundation governance"
    ],
    "pricing": "Free (Apache 2.0 open source; no paid tiers)",
    "academic": "free",
    "use_cases": [
      "coding",
      "data analysis",
      "multi-step automation",
      "file editing",
      "CLI/shell workflows",
      "MCP extension orchestration"
    ],
    "runs_locally": true,
    "links": {
      "docs": "https://goose-docs.ai",
      "pricing": "",
      "privacy": "https://goose-docs.ai/docs/guides/usage-data/"
    },
    "notes": "Open-source CLI and desktop agent under Agentic AI Foundation/Linux Foundation governance. Its privacy posture is determined mainly by the configured model provider; optional usage-data collection is disabled by default.",
    "sources": [
      "https://goose-docs.ai/docs/guides/usage-data/",
      "https://goose-docs.ai/docs/guides/environment-variables/",
      "https://github.com/aaif-goose/goose",
      "https://www.linuxfoundation.org/press/linux-foundation-announces-the-formation-of-the-agentic-ai-foundation"
    ],
    "status": "active",
    "current_name": "Goose",
    "confidence": "high",
    "verified": "2026-07-13",
    "established": false,
    "tier_gate": "",
    "date_modified": "2026-07-13",
    "software_license": "Apache-2.0",
    "license_status": "confirmed",
    "special_route": {
      "status": "config-required",
      "boundary": "customer-controlled",
      "inference": "local-only",
      "required_controls": [
        "Requires a fully local model on controlled infrastructure. Keep optional usage-data collection disabled; cloud model routes are not acceptable."
      ],
      "residual_risks": [
        "Conditional route: revalidate the exact deployment, model endpoint, integrations, telemetry, and institutional approval before use."
      ]
    }
  },
  {
    "id": "rca-cursor",
    "date_added": "2026-06-21",
    "name": "Cursor",
    "vendor": "Anysphere",
    "type": "ide",
    "openness": "commercial",
    "deployment": "cloud",
    "model_backend": "frontier models (OpenAI, Anthropic, Google, xAI - hosted) + BYO key",
    "data_handling": "no-train",
    "data_handling_note": "Privacy Mode can be enabled by individuals and is enforced for users who belong to a team. It prevents Cursor and model providers from using content for training, but requests still route through Cursor's backend, including BYOK requests. Cursor's DPA prohibits submission of sensitive/special-category data. There is no controlled-infrastructure inference path.",
    "capability": "frontier",
    "backend_dependent": false,
    "suitability": {
      "nonsensitive": "ok",
      "personal": "cfg",
      "special": "no"
    },
    "suitability_notes": {
      "personal": "Enable Privacy Mode and use an organizational contract/DPA that permits the intended personal-data processing. BYOK does not bypass Cursor's backend.",
      "special": "Cloud-only and the DPA restricts sensitive-data submission. Not suitable for health/genetic/clinical data under this index's controlled-infrastructure rule."
    },
    "compliance": [
      "SOC 2 Type II",
      "GDPR"
    ],
    "pricing": "Hobby (free) - Pro ($20/mo) - Pro+ ($60/mo) - Ultra ($200/mo) - Teams ($40/user/mo) - Enterprise (custom). ~20% discount on annual billing. Students: 1 year of Pro free via SheerID verification.",
    "academic": "No current general student entitlement was confirmed on the official student page.",
    "use_cases": [
      "coding",
      "agentic coding",
      "code review",
      "MCP tool use"
    ],
    "runs_locally": false,
    "links": {
      "docs": "https://cursor.com/docs",
      "pricing": "https://cursor.com/pricing",
      "privacy": "https://cursor.com/privacy"
    },
    "notes": "AI-native editor with cloud inference. Privacy Mode is available to individuals and enforced for teams, but BYOK still traverses Cursor's backend; no self-hosted or air-gapped inference option was confirmed.",
    "sources": [
      "https://cursor.com/data-use",
      "https://cursor.com/security",
      "https://cursor.com/privacy",
      "https://cursor.com/terms/dpa",
      "https://cursor.com/pricing",
      "https://cursor.com/students"
    ],
    "status": "active",
    "current_name": "Cursor",
    "confidence": "high",
    "verified": "2026-07-13",
    "established": true,
    "tier_gate": "Privacy Mode + appropriate team/enterprise DPA",
    "date_modified": "2026-07-13",
    "software_license": null,
    "license_status": "proprietary",
    "special_route": {
      "status": "not-appropriate",
      "boundary": "none",
      "inference": "none",
      "required_controls": [],
      "residual_risks": [
        "Cloud-only and the DPA restricts sensitive-data submission. Not suitable for health/genetic/clinical data under this index's controlled-infrastructure rule."
      ]
    }
  },
  {
    "id": "rca-github-copilot",
    "date_added": "2026-06-21",
    "name": "GitHub Copilot",
    "vendor": "GitHub / Microsoft",
    "type": "ide",
    "openness": "commercial",
    "deployment": "cloud",
    "model_backend": "multiple frontier models selectable (GPT-5 mini, Claude Sonnet/Opus, and others; hosted by GitHub/Microsoft)",
    "data_handling": "no-train",
    "data_handling_note": "MAJOR POLICY CHANGE (April 24, 2026): Free, Pro, and Pro+ tiers now use interaction data (inputs, outputs, code snippets, context) for AI training BY DEFAULT - users must actively opt out in account settings. Business and Enterprise tiers remain excluded from training under the GitHub Data Protection Agreement (DPA). The no-train guarantee therefore requires Business or Enterprise. The free/individual tiers are now opt-out (risky by default). Zero-data-retention is not offered; Business/Enterprise have a DPA prohibiting training use without authorization. EU data residency now available for Enterprise (opt-in, +10% cost), covering EU member states and EFTA countries from May 1, 2026.",
    "capability": "frontier",
    "backend_dependent": false,
    "suitability": {
      "nonsensitive": "ok",
      "personal": "cfg",
      "special": "no"
    },
    "suitability_notes": {
      "personal": "Requires Business or Enterprise tier plus DPA - those tiers contractually exclude code/interaction data from training. Free/Pro/Pro+ tiers now train on interaction data by default (opt-out available but not guaranteed by contract). EU data residency (Enterprise, opt-in) satisfies GDPR data-localisation needs.",
      "special": "Cloud-only; no self-hosting or air-gapped deployment path. No HIPAA BAA confirmed for GitHub Copilot specifically. Even with Business/Enterprise and EU residency, data leaves the researcher's systems and special-category health/genetic data should not be processed."
    },
    "compliance": [
      "SOC 2 Type I",
      "ISO/IEC 27001:2013",
      "GDPR (DPA available for Business/Enterprise)"
    ],
    "pricing": "Free - Pro ($10/mo) - Pro+ ($39/mo) - Max ($100/mo) - Business ($19/seat/mo) - Enterprise ($39/user/mo). From June 1 2026, paid plans include monthly GitHub AI Credits; completions are free on all paid plans but chat/agent mode draws from credits.",
    "academic": "Verified students and teachers may qualify for Copilot access, but student chat/agent capabilities are reduced and new student signups were temporarily paused as of this audit.",
    "use_cases": [
      "coding",
      "code review",
      "agentic software development",
      "CLI assistance",
      "pull request summaries"
    ],
    "runs_locally": false,
    "links": {
      "docs": "https://docs.github.com/en/copilot",
      "pricing": "https://github.com/features/copilot/plans",
      "privacy": "https://github.blog/news-insights/company-news/updates-to-github-copilot-interaction-data-usage-policy/"
    },
    "notes": "Individual Free/Pro/Pro+ interaction data can be used for training by default unless the user opts out; Business/Enterprise remain no-training. EU/US residency changes model multipliers rather than adding a flat plan surcharge. Copilot itself was not yet documented as FedRAMP authorized.",
    "sources": [
      "https://github.com/features/copilot/plans",
      "https://docs.github.com/en/copilot/get-started/plans",
      "https://docs.github.com/en/copilot/how-tos/manage-your-account/manage-policies",
      "https://github.blog/changelog/2026-04-13-copilot-data-residency-in-us-eu-and-fedramp-compliance-now-available/",
      "https://github.blog/changelog/2026-06-01-updates-to-github-copilot-billing-and-plans/"
    ],
    "status": "active",
    "current_name": "GitHub Copilot",
    "confidence": "high",
    "verified": "2026-07-13",
    "established": true,
    "tier_gate": "Business / Enterprise",
    "date_modified": "2026-07-13",
    "software_license": null,
    "license_status": "proprietary",
    "special_route": {
      "status": "not-appropriate",
      "boundary": "none",
      "inference": "none",
      "required_controls": [],
      "residual_risks": [
        "Cloud-only; no self-hosting or air-gapped deployment path. No HIPAA BAA confirmed for GitHub Copilot specifically. Even with Business/Enterprise and EU residency, data leaves the researcher's systems and special-category health/genetic data should not be processed."
      ]
    }
  },
  {
    "id": "rca-windsurf",
    "date_added": "2026-06-21",
    "name": "Windsurf",
    "vendor": "Cognition AI, Inc",
    "type": "ide",
    "openness": "commercial",
    "deployment": "cloud",
    "model_backend": "Proprietary SWE-1.6 (default) + frontier models (OpenAI, Claude, Gemini on Pro/Max)",
    "data_handling": "no-train",
    "data_handling_note": "Windsurf is now Devin Desktop. Paid users can opt out of training; after opt-out Cognition applies no-training and model-provider ZDR, with team controls administered centrally. Cognition's Customer Dedicated Deployment is vendor-hosted isolated infrastructure, not customer-controlled on-prem or self-hosting; the Devin brain remains in Cognition Cloud.",
    "capability": "frontier",
    "backend_dependent": false,
    "suitability": {
      "nonsensitive": "ok",
      "personal": "cfg",
      "special": "no"
    },
    "suitability_notes": {
      "personal": "Use a paid plan, opt out of training, and execute the Cognition DPA before processing personal data. Customer Dedicated Deployment is still Cognition-hosted.",
      "special": "Cloud inference remains in Cognition infrastructure. Not suitable for special-category data under the controlled-infrastructure rule."
    },
    "compliance": [
      "SOC 2 Type II"
    ],
    "pricing": "Free ($0) - Pro ($20/mo) - Max ($200/mo) - Teams ($80/mo base + $40/seat) - Enterprise (custom). Student discount ~50%+ off Pro with .edu email.",
    "academic": "No current official student discount was confirmed.",
    "use_cases": [
      "coding",
      "agentic coding",
      "multi-agent orchestration"
    ],
    "runs_locally": false,
    "links": {
      "docs": "https://docs.devin.ai/desktop/getting-started",
      "pricing": "https://devin.ai/pricing",
      "privacy": "https://cognition.com/legal/privacy-policy"
    },
    "notes": "Renamed to Devin Desktop after the Cognition acquisition. It is cloud-based even when the client runs locally; vendor-hosted dedicated deployment must not be described as self-hosted or on-prem.",
    "sources": [
      "https://cognition.com/blog/introducing-devin-desktop",
      "https://cognition.com/legal/platform-terms-of-service",
      "https://cognition.com/legal/privacy-policy",
      "https://docs.devin.ai/enterprise/deployment/overview",
      "https://docs.devin.ai/admin/billing/self-serve",
      "https://cognition.com/documents/Cognition-DPA.pdf"
    ],
    "status": "renamed",
    "current_name": "Devin Desktop",
    "confidence": "medium",
    "verified": "2026-07-13",
    "established": true,
    "tier_gate": "paid plan + training opt-out; organizational DPA for personal data",
    "date_modified": "2026-07-13",
    "software_license": null,
    "license_status": "proprietary",
    "special_route": {
      "status": "not-appropriate",
      "boundary": "none",
      "inference": "none",
      "required_controls": [],
      "residual_risks": [
        "Cloud inference remains in Cognition infrastructure. Not suitable for special-category data under the controlled-infrastructure rule."
      ]
    },
    "aliases": [
      "Windsurf"
    ]
  },
  {
    "id": "rca-google-antigravity",
    "date_added": "2026-06-21",
    "name": "Google Antigravity",
    "vendor": "Google",
    "type": "ide",
    "openness": "commercial",
    "deployment": "cloud",
    "model_backend": "Gemini 3.1 Pro / 3.5 Flash (default); also supports Claude Sonnet/Opus and OpenAI GPT-OSS models",
    "data_handling": "opt-out",
    "data_handling_note": "Consumer use follows Google consumer terms and may contribute to improvement unless opted out. Enterprise/GCP access is broadly available and provides contractual no-training and DPA controls; inference remains cloud-based.",
    "capability": "frontier",
    "backend_dependent": false,
    "suitability": {
      "nonsensitive": "ok",
      "personal": "cfg",
      "special": "no"
    },
    "suitability_notes": {
      "personal": "Use the enterprise/GCP route with contractual no-training and a signed DPA; consumer use is not suitable for personal data by default.",
      "special": "Cloud-only. Not suitable for special-category data under the controlled-infrastructure rule."
    },
    "compliance": [
      "GDPR (via Google Cloud CDPA, GCP enterprise path only)",
      "Google Cloud AI/ML Privacy Commitment (GCP path only)"
    ],
    "pricing": "Free, Google AI Pro ($20), Google AI Ultra ($100), and top Ultra ($200) tiers are documented; enterprise/GCP terms are contractual.",
    "academic": "No separate academic entitlement was confirmed; do not treat consumer family sharing as an academic control.",
    "use_cases": [
      "coding",
      "agentic software development",
      "multi-agent orchestration",
      "scheduled automation",
      "data analysis (CLI)"
    ],
    "runs_locally": false,
    "links": {
      "docs": "https://developers.googleblog.com/build-with-google-antigravity-our-new-agentic-development-platform/",
      "pricing": "https://antigravity.google/pricing",
      "privacy": "https://antigravity.google/terms"
    },
    "notes": "Proprietary agentic development platform distinct from the open-source Gemini CLI. Consumer and enterprise/GCP data terms differ materially; enterprise access is no longer invite-only.",
    "sources": [
      "https://antigravity.google/terms",
      "https://antigravity.google/blog/google-antigravity-for-enterprises",
      "https://antigravity.google/blog/changes-to-antigravity-plans",
      "https://developers.googleblog.com/build-with-google-antigravity-our-new-agentic-development-platform/"
    ],
    "status": "active",
    "current_name": "Google Antigravity",
    "confidence": "medium",
    "verified": "2026-07-13",
    "established": false,
    "tier_gate": "enterprise/GCP contract + DPA",
    "date_modified": "2026-07-13",
    "software_license": null,
    "license_status": "proprietary",
    "special_route": {
      "status": "not-appropriate",
      "boundary": "none",
      "inference": "none",
      "required_controls": [],
      "residual_risks": [
        "Cloud-only. Not suitable for special-category data under the controlled-infrastructure rule."
      ]
    }
  },
  {
    "id": "rca-jetbrains-junie",
    "date_added": "2026-06-21",
    "name": "JetBrains Junie",
    "vendor": "JetBrains",
    "type": "ide",
    "openness": "commercial",
    "deployment": "cloud / local-capable",
    "model_backend": "frontier models via JetBrains subscription (Anthropic, OpenAI, Google, xAI); BYOK (Anthropic, OpenAI, Google, xAI, OpenRouter, GitHub Copilot); local runtimes (Ollama, LM Studio, LiteLLM) via Junie CLI",
    "data_handling": "local",
    "data_handling_note": "Junie CLI supports Ollama and custom local endpoints, allowing inference to remain on controlled infrastructure. For JetBrains-hosted/provider routes, detailed code-data sharing is opt-in and disabled by default for commercial organizations; one-year retention applies only after opt-in. BYOK and cloud routes must be assessed separately.",
    "capability": "frontier",
    "backend_dependent": true,
    "suitability": {
      "nonsensitive": "ok",
      "personal": "cfg",
      "special": "cfg"
    },
    "suitability_notes": {
      "personal": "Use a signed DPA and keep detailed data sharing disabled, or configure a fully local endpoint.",
      "special": "Requires Junie CLI with a fully local Ollama/custom endpoint on controlled infrastructure. Cloud provider routes are not acceptable."
    },
    "compliance": [
      "SOC 2 Type II",
      "GDPR",
      "DPA available"
    ],
    "pricing": "AI Free; AI Pro ($10/month individual, $20 organization); AI Ultimate ($30 individual, $60 organization); AI Enterprise $60/user/month. BYOK/provider costs are separate.",
    "academic": "Students and teachers get JetBrains IDEs free (Student Pack); AI Free tier included with educational license; AI Pro/Ultimate not included - students must pay separately. 40% graduation discount available for 2 years post-study.",
    "use_cases": [
      "coding",
      "agentic debugging",
      "PR review",
      "CI/CD automation"
    ],
    "runs_locally": true,
    "links": {
      "docs": "https://junie.jetbrains.com/docs/",
      "pricing": "https://www.jetbrains.com/help/ai-assistant/licensing-and-subscriptions.html",
      "privacy": "https://www.jetbrains.com/legal/docs/terms/jetbrains-ai-service/"
    },
    "notes": "Agentic assistant in JetBrains IDEs and a CLI. The fully local Ollama/custom-endpoint path is the qualifying controlled-infrastructure route; do not generalize cloud no-training terms to local execution or vice versa.",
    "sources": [
      "https://junie.jetbrains.com/docs/custom-llm-ollama.html",
      "https://junie.jetbrains.com/docs/custom-llm-models.html",
      "https://www.jetbrains.com/help/ai-assistant/how-we-handle-your-code-and-data.html",
      "https://www.jetbrains.com/legal/docs/terms/product_data_collection/",
      "https://www.jetbrains.com/help/ai-assistant/licensing-and-subscriptions.html"
    ],
    "status": "active",
    "current_name": "JetBrains Junie",
    "confidence": "high",
    "verified": "2026-07-13",
    "established": false,
    "tier_gate": "fully local endpoint for special-category data; AI Enterprise terms for organizational cloud use",
    "date_modified": "2026-07-13",
    "software_license": null,
    "license_status": "proprietary",
    "special_route": {
      "status": "config-required",
      "boundary": "customer-controlled",
      "inference": "local-only",
      "required_controls": [
        "Requires Junie CLI with a fully local Ollama/custom endpoint on controlled infrastructure. Cloud provider routes are not acceptable."
      ],
      "residual_risks": [
        "Conditional route: revalidate the exact deployment, model endpoint, integrations, telemetry, and institutional approval before use."
      ]
    }
  },
  {
    "id": "rca-cline",
    "date_added": "2026-06-21",
    "name": "Cline",
    "vendor": "Cline Bot Inc.",
    "type": "ide",
    "openness": "open-source",
    "deployment": "local-capable / cloud provider dependent",
    "model_backend": "BYO key - Anthropic, OpenAI, Google, AWS Bedrock, Azure, or local model via Ollama/LM Studio (30+ providers)",
    "data_handling": "local",
    "data_handling_note": "With direct BYOK, prompts/code go to the selected provider and are not received by Cline; with Ollama or LM Studio they can remain fully local. Cline-hosted/provider routes remain subject to Cline's service terms. Official enterprise claims cover client-side execution, provider choice, VPC options, and no code/prompt visibility, not a universally self-hosted Cline service.",
    "capability": "strong",
    "backend_dependent": true,
    "suitability": {
      "nonsensitive": "ok",
      "personal": "cfg",
      "special": "cfg"
    },
    "suitability_notes": {
      "personal": "Use a fully local model or a direct provider route covered by an appropriate DPA/no-training agreement. Assess Cline-hosted service routes separately.",
      "special": "Requires a fully local Ollama/LM Studio model on controlled infrastructure. Enterprise/VPC wording alone does not establish this boundary."
    },
    "compliance": [
      "self-hosted"
    ],
    "pricing": "Free (open-source, BYOK usage-based, no subscription); Enterprise: custom pricing (contact sales). No academic/student discount listed.",
    "academic": "free (open-source tier)",
    "use_cases": [
      "coding",
      "agentic coding",
      "file editing",
      "terminal commands",
      "browser automation",
      "multi-IDE support"
    ],
    "runs_locally": true,
    "links": {
      "docs": "https://docs.cline.bot/cline-overview",
      "pricing": "https://cline.bot/pricing",
      "privacy": "https://cline.bot/privacy"
    },
    "notes": "Open-source client with direct-provider and local-model routes. Privacy claims must be scoped to the selected route; enterprise does not automatically mean a fully self-hosted inference service.",
    "sources": [
      "https://cline.bot/pricing",
      "https://cline.bot/tos",
      "https://cline.bot/privacy",
      "https://cline.bot/enterprise",
      "https://docs.cline.bot/running-models-locally/overview",
      "https://github.com/cline/cline"
    ],
    "status": "active",
    "current_name": "Cline",
    "confidence": "high",
    "verified": "2026-07-13",
    "established": true,
    "tier_gate": "",
    "date_modified": "2026-07-13",
    "software_license": "Apache-2.0",
    "license_status": "confirmed",
    "special_route": {
      "status": "config-required",
      "boundary": "customer-controlled",
      "inference": "local-only",
      "required_controls": [
        "Requires a fully local Ollama/LM Studio model on controlled infrastructure. Enterprise/VPC wording alone does not establish this boundary."
      ],
      "residual_risks": [
        "Conditional route: revalidate the exact deployment, model endpoint, integrations, telemetry, and institutional approval before use."
      ]
    }
  },
  {
    "id": "rca-tabnine",
    "date_added": "2026-06-21",
    "name": "Tabnine",
    "vendor": "Tabnine",
    "type": "ide",
    "openness": "commercial",
    "deployment": "self-hostable",
    "model_backend": "own models + BYO LLM endpoint; air-gapped / on-prem option",
    "data_handling": "local",
    "data_handling_note": "Paid cloud plans document no-training/no-retention handling. Private installation, on-prem, and air-gapped deployment are Enterprise capabilities; they were not confirmed for both self-service price tiers.",
    "capability": "strong",
    "backend_dependent": false,
    "suitability": {
      "nonsensitive": "ok",
      "personal": "ok",
      "special": "cfg"
    },
    "suitability_notes": {
      "personal": "Use an appropriate DPA for SaaS or Enterprise private installation when data must remain within institutional infrastructure.",
      "special": "Requires Enterprise private installation/on-prem/air-gap on controlled infrastructure. Cloud infrastructure certifications do not substitute for product-scope evidence."
    },
    "compliance": [
      "SOC 2",
      "ISO/IEC 27001",
      "ISO 9001",
      "GDPR posture"
    ],
    "pricing": "Code Assistant $39/user/month - Agentic Platform $59/user/month (both annual only; free tier discontinued April 2025; 14-day trial available)",
    "academic": "None - no academic or student discount listed",
    "use_cases": [
      "coding",
      "code completion",
      "AI chat in IDE",
      "agentic coding workflows",
      "CI/CD headless agents"
    ],
    "runs_locally": true,
    "links": {
      "docs": "https://docs.tabnine.com",
      "pricing": "https://www.tabnine.com/pricing/",
      "privacy": "https://docs.tabnine.com/main/welcome/readme/privacy"
    },
    "notes": "Privacy-focused commercial assistant. The qualifying special-category path is Enterprise private installation; cloud-provider datacenter certifications must not be presented as Tabnine product certifications.",
    "sources": [
      "https://docs.tabnine.com/main/administering-tabnine/managing-your-team",
      "https://docs.tabnine.com/main/welcome/readme/security",
      "https://trust.tabnine.com/",
      "https://www.tabnine.com/pricing/"
    ],
    "status": "active",
    "current_name": "Tabnine",
    "confidence": "high",
    "verified": "2026-07-13",
    "established": false,
    "tier_gate": "Enterprise private installation for controlled-infrastructure use",
    "date_modified": "2026-07-13",
    "software_license": null,
    "license_status": "proprietary",
    "special_route": {
      "status": "config-required",
      "boundary": "customer-controlled",
      "inference": "local-only",
      "required_controls": [
        "Requires Enterprise private installation/on-prem/air-gap on controlled infrastructure. Cloud infrastructure certifications do not substitute for product-scope evidence."
      ],
      "residual_risks": [
        "Conditional route: revalidate the exact deployment, model endpoint, integrations, telemetry, and institutional approval before use."
      ]
    }
  },
  {
    "id": "rca-tabby",
    "date_added": "2026-06-21",
    "name": "Tabby",
    "vendor": "TabbyML",
    "type": "ide",
    "openness": "open-core",
    "deployment": "self-hostable / cloud",
    "model_backend": "Self-hosted open-weight models for Tabby; Pochi is Apache-2.0, BYOK, and also supports self-hosted/custom model endpoints",
    "data_handling": "local",
    "data_handling_note": "Tabby and Pochi can run with self-hosted models so code stays on controlled infrastructure. Pochi does not require an account for BYOK. Anonymous server/extension usage collection is enabled by default, contains documented non-code operational statistics, and can be disabled. The website privacy policy is not evidence for prompt handling in every model route.",
    "capability": "capable",
    "backend_dependent": true,
    "suitability": {
      "nonsensitive": "ok",
      "personal": "ok",
      "special": "cfg"
    },
    "suitability_notes": {
      "personal": "Use a self-hosted model and disable anonymous usage collection where required; assess any cloud provider separately.",
      "special": "Requires self-hosted Tabby/Pochi with a local model on controlled infrastructure and usage collection disabled."
    },
    "compliance": [
      "self-hosted",
      "LDAP",
      "SSO (GitHub/GitLab OAuth, LDAP)",
      "GDPR (rights acknowledged in privacy policy - but data may transfer to US/China for cloud)",
      "open-source Apache 2.0 core"
    ],
    "pricing": "Free (Community - self-hosted, up to 5 users, Apache 2.0 core) - Team $19/seat/month (up to 50 users, flexible deployment) - Enterprise: custom pricing (unlimited users, customised deployment) - Tabby Cloud Pochi agent: usage-based, $20 free monthly credits; tab completion always free",
    "academic": "free (Community self-hosted tier is free with no user cap restriction documented beyond 5-user Community limit; no explicit academic discount program found)",
    "use_cases": [
      "coding",
      "code completion",
      "inline chat",
      "answer engine",
      "agentic coding (Pochi)"
    ],
    "runs_locally": true,
    "links": {
      "docs": "https://tabby.tabbyml.com/docs/",
      "pricing": "https://www.tabbyml.com/pricing",
      "privacy": "https://www.tabbyml.com/privacy"
    },
    "notes": "Self-hostable coding stack with the Pochi agent. Pochi is not cloud-only; its BYOK and custom/local model routes must be distinguished from Tabby-hosted services.",
    "sources": [
      "https://www.tabbyml.com/pricing",
      "https://github.com/TabbyML/pochi",
      "https://github.com/TabbyML/tabby",
      "https://tabby.tabbyml.com/docs/administration/usage-collection/",
      "https://tabby.tabbyml.com/docs/extensions/configurations/",
      "https://www.tabbyml.com/privacy"
    ],
    "status": "active",
    "current_name": "Tabby",
    "confidence": "high",
    "verified": "2026-07-13",
    "established": false,
    "tier_gate": "",
    "date_modified": "2026-07-13",
    "software_license": null,
    "license_status": "unconfirmed",
    "special_route": {
      "status": "config-required",
      "boundary": "customer-controlled",
      "inference": "local-only",
      "required_controls": [
        "Requires self-hosted Tabby/Pochi with a local model on controlled infrastructure and usage collection disabled."
      ],
      "residual_risks": [
        "Conditional route: revalidate the exact deployment, model endpoint, integrations, telemetry, and institutional approval before use."
      ]
    }
  },
  {
    "id": "rca-devin",
    "date_added": "2026-06-21",
    "name": "Devin",
    "vendor": "Cognition",
    "type": "cloud",
    "openness": "commercial",
    "deployment": "cloud / Cognition-hosted dedicated deployment",
    "model_backend": "frontier models (hosted by Cognition; Pro/Max users can choose OpenAI, Claude, Gemini)",
    "data_handling": "no-train",
    "data_handling_note": "Cognition's baseline terms may permit training on Customer Data. Paid tiers can opt out; after opt-out Cognition applies no-training and model-provider ZDR. Customer Dedicated Deployment is Cognition-hosted isolated infrastructure, not self-hosting; the agent brain remains in Cognition Cloud.",
    "capability": "frontier",
    "backend_dependent": false,
    "suitability": {
      "nonsensitive": "ok",
      "personal": "cfg",
      "special": "no"
    },
    "suitability_notes": {
      "personal": "Use a paid plan, opt out of training, and execute the Cognition DPA with an appropriate legal basis.",
      "special": "The platform terms prohibit medical/sensitive personal information absent separate written authorization, and inference remains in vendor cloud. Not suitable under this index's rule."
    },
    "compliance": [
      "SOC 2 Type II"
    ],
    "pricing": "Free; Pro $20/month; Max $200/month; Teams $80 minimum plus $40/full seat; Enterprise uses order-form/ACU pricing.",
    "academic": "No academic or student discount program documented.",
    "use_cases": [
      "coding",
      "autonomous software engineering",
      "code review",
      "IDE/code completion",
      "agent orchestration"
    ],
    "runs_locally": false,
    "links": {
      "docs": "https://docs.devin.ai",
      "pricing": "https://devin.ai/pricing",
      "privacy": "https://cognition.com/legal/privacy-policy"
    },
    "notes": "Autonomous cloud software engineer. Dedicated deployment is vendor-hosted, not customer-controlled on-prem; no-training requires a paid-tier opt-out and contractual review.",
    "sources": [
      "https://cognition.com/legal/platform-terms-of-service",
      "https://docs.devin.ai/enterprise/deployment/overview",
      "https://docs.devin.ai/admin/billing/self-serve",
      "https://docs.devin.ai/admin/billing",
      "https://cognition.com/legal/security",
      "https://cognition.com/documents/Cognition-DPA.pdf"
    ],
    "status": "active",
    "current_name": "Devin",
    "confidence": "high",
    "verified": "2026-07-13",
    "established": true,
    "tier_gate": "paid plan + training opt-out + DPA",
    "date_modified": "2026-07-13",
    "software_license": null,
    "license_status": "proprietary",
    "special_route": {
      "status": "not-appropriate",
      "boundary": "none",
      "inference": "none",
      "required_controls": [],
      "residual_risks": [
        "The platform terms prohibit medical/sensitive personal information absent separate written authorization, and inference remains in vendor cloud. Not suitable under this index's rule."
      ]
    }
  },
  {
    "id": "rca-replit-agent",
    "date_added": "2026-06-21",
    "name": "Replit Agent",
    "vendor": "Replit",
    "type": "cloud",
    "openness": "commercial",
    "deployment": "cloud",
    "model_backend": "Managed, dynamically changing model stack; Replit does not currently enumerate one fixed authoritative backend for Agent 4",
    "data_handling": "no-train",
    "data_handling_note": "Replit's Commercial Agreement states that Customer Content is not used for training. Consumer/noncommercial privacy terms still permit machine-learning and product-improvement uses. Personal data therefore requires a commercial/enterprise agreement and DPA. All AI processing remains cloud-based.",
    "capability": "strong",
    "backend_dependent": false,
    "suitability": {
      "nonsensitive": "ok",
      "personal": "cfg",
      "special": "no"
    },
    "suitability_notes": {
      "personal": "Use a commercial/enterprise contract with the no-training clause and execute Replit's DPA; do not infer AI data residency from application-hosting regions.",
      "special": "Cloud-only and no public product-specific BAA was confirmed. Not suitable under the controlled-infrastructure rule even though the DPA contemplates regulated categories."
    },
    "compliance": [
      "SOC 2 Type II",
      "GDPR (DPA available for EEA/UK/CH enterprise customers, SCCs)"
    ],
    "pricing": "Free (Starter, limited Agent credits, 1 published project) - Core $25/mo ($20/mo annual, $25 credits, 2 parallel agents) - Pro $100/mo ($95/mo annual, $100 credits, 10 parallel agents) - Enterprise (custom). Effort-based credit pricing for Agent tasks since mid-2025.",
    "academic": "No dedicated academic discount listed on pricing page; annual billing saves 5-20%. No student plan identified.",
    "use_cases": [
      "coding",
      "full-stack web app development",
      "vibe coding / build-from-prompt",
      "app deployment",
      "agent-based autonomous development"
    ],
    "runs_locally": false,
    "links": {
      "docs": "https://docs.replit.com/build/welcome",
      "pricing": "https://replit.com/pricing",
      "privacy": "https://replit.com/privacy-policy"
    },
    "notes": "Agent 4 is released. The product uses a managed model stack and cloud execution; model identities and hosting-region claims should not be frozen without current first-party evidence.",
    "sources": [
      "https://replit.com/commercial-agreement",
      "https://replit.com/dpa/",
      "https://replit.com/privacy-policy/",
      "https://replit.com/pricing",
      "https://replit.com/blog/introducing-agent-4-built-for-creativity",
      "https://replit.com/blog/whats-changed-agent3-to-agent4"
    ],
    "status": "active",
    "current_name": "Replit Agent",
    "confidence": "high",
    "verified": "2026-07-13",
    "established": true,
    "tier_gate": "paid / Enterprise tier; verify retention",
    "date_modified": "2026-07-13",
    "software_license": null,
    "license_status": "proprietary",
    "special_route": {
      "status": "not-appropriate",
      "boundary": "none",
      "inference": "none",
      "required_controls": [],
      "residual_risks": [
        "Cloud-only and no public product-specific BAA was confirmed. Not suitable under the controlled-infrastructure rule even though the DPA contemplates regulated categories."
      ]
    }
  },
  {
    "id": "rca-openhands",
    "date_added": "2026-06-21",
    "name": "OpenHands",
    "vendor": "All Hands AI",
    "type": "cloud",
    "openness": "open-core",
    "deployment": "cloud / self-hostable / local-capable",
    "model_backend": "BYO key (any OpenAI-compatible API) or at-cost via OpenHands LLM provider; local models supported",
    "data_handling": "local",
    "data_handling_note": "OpenHands Cloud may use customer content and feedback for model improvement. The controlled-infrastructure path is self-hosted OpenHands with a fully local model; enterprise deployment claims must be evaluated with the selected model/provider rather than assumed private by default.",
    "capability": "strong",
    "backend_dependent": true,
    "suitability": {
      "nonsensitive": "ok",
      "personal": "cfg",
      "special": "cfg"
    },
    "suitability_notes": {
      "personal": "Do not use the public cloud tier for personal data. Self-host and use a local model, or obtain an appropriate enterprise contract/DPA for every processor.",
      "special": "Requires self-hosted OpenHands plus a fully local model on controlled infrastructure. Cloud OpenHands and cloud LLM routes are not acceptable."
    },
    "compliance": [
      "self-hosted-only (no SOC2/HIPAA-BAA/DPA found for cloud tier)"
    ],
    "pricing": "Free (open-source, local, unlimited) - Individual cloud: free, 10 conversations/day, BYOK or at-cost tokens - Enterprise: custom pricing, self-hosted VPC via Kubernetes",
    "academic": "no explicit academic discount; open-source tier is free",
    "use_cases": [
      "coding",
      "software engineering automation",
      "agentic task execution",
      "CI/CD integration",
      "data analysis"
    ],
    "runs_locally": true,
    "links": {
      "docs": "https://docs.openhands.dev/overview/introduction",
      "pricing": "https://www.openhands.dev/pricing",
      "privacy": "https://www.openhands.dev/privacy"
    },
    "notes": "Open-source/self-hostable coding agent with a separate cloud service. Remove volatile star/version counts; data safety depends on deployment and the configured model route.",
    "sources": [
      "https://www.openhands.dev/privacy",
      "https://www.openhands.dev/pricing",
      "https://docs.openhands.dev/overview/introduction",
      "https://docs.openhands.dev/enterprise",
      "https://github.com/All-Hands-AI/OpenHands/releases"
    ],
    "status": "active",
    "current_name": "OpenHands",
    "confidence": "high",
    "verified": "2026-07-13",
    "established": false,
    "tier_gate": "",
    "date_modified": "2026-07-13",
    "software_license": null,
    "license_status": "unconfirmed",
    "special_route": {
      "status": "config-required",
      "boundary": "customer-controlled",
      "inference": "local-only",
      "required_controls": [
        "Requires self-hosted OpenHands plus a fully local model on controlled infrastructure. Cloud OpenHands and cloud LLM routes are not acceptable."
      ],
      "residual_risks": [
        "Conditional route: revalidate the exact deployment, model endpoint, integrations, telemetry, and institutional approval before use."
      ]
    }
  },
  {
    "id": "rca-jupyter-ai",
    "date_added": "2026-06-21",
    "name": "Jupyter AI",
    "vendor": "Project Jupyter (JupyterLab org)",
    "type": "data",
    "openness": "open-source",
    "deployment": "local-capable",
    "model_backend": "Jupyter AI v3 integrates agents through Agent Client Protocol; direct model access remains available through supported provider integrations, including local runtimes",
    "data_handling": "local",
    "data_handling_note": "When a local model (Ollama, GPT4All, vLLM) is used, notebook data never leaves the machine - this is the safest configuration. With a BYO cloud API key (OpenAI, Anthropic, etc.) the chat interface explicitly sends data to the third-party provider; Jupyter AI documentation warns users to review each provider's privacy policy before sending confidential or sensitive data. Project Jupyter itself collects no telemetry by default. There is no SaaS tier and no cloud service operated by Project Jupyter - all data handling is determined by the user's chosen model backend.",
    "capability": "frontier",
    "backend_dependent": true,
    "suitability": {
      "nonsensitive": "ok",
      "personal": "cfg",
      "special": "cfg"
    },
    "suitability_notes": {
      "personal": "Use a local model (Ollama, GPT4All, vLLM) - data stays on the machine and never reaches third-party providers. With a cloud API key, the chosen provider's data-use terms govern, which may be incompatible with GDPR obligations.",
      "special": "Use a local model only - special-category (health/genetic/clinical) data must not be sent to cloud API endpoints. Local deployment via Ollama or GPT4All keeps data fully on-premise with no external transmission."
    },
    "compliance": [
      "self-hosted"
    ],
    "pricing": "Free and open source (BSD-3-Clause); users pay only any selected cloud-model provider costs",
    "academic": "free",
    "use_cases": [
      "data analysis",
      "coding",
      "notebook AI assistant",
      "agentic workflows in notebooks",
      "multi-agent collaboration"
    ],
    "runs_locally": true,
    "links": {
      "docs": "https://jupyter-ai.readthedocs.io/en/latest/",
      "pricing": "https://github.com/jupyterlab/jupyter-ai",
      "privacy": "https://jupyter.org/privacy"
    },
    "notes": "Stable v3.0.1 was released 2026-06-30. Version 3 centers Agent Client Protocol integration; privacy remains determined by the chosen local agent/model or cloud provider.",
    "sources": [
      "https://github.com/jupyterlab/jupyter-ai",
      "https://jupyter-ai.readthedocs.io/en/latest/",
      "https://jupyter.org/privacy",
      "https://github.com/jupyterlab/jupyter-ai/releases"
    ],
    "status": "active",
    "current_name": "Jupyter AI",
    "confidence": "high",
    "verified": "2026-07-13",
    "established": true,
    "tier_gate": "",
    "date_modified": "2026-07-13",
    "software_license": "BSD-3-Clause",
    "license_status": "confirmed",
    "special_route": {
      "status": "config-required",
      "boundary": "customer-controlled",
      "inference": "local-only",
      "required_controls": [
        "Use a local model only - special-category (health/genetic/clinical) data must not be sent to cloud API endpoints. Local deployment via Ollama or GPT4All keeps data fully on-premise with no external transmission."
      ],
      "residual_risks": [
        "Conditional route: revalidate the exact deployment, model endpoint, integrations, telemetry, and institutional approval before use."
      ]
    }
  },
  {
    "id": "rca-julius-ai",
    "date_added": "2026-06-21",
    "name": "Julius AI",
    "vendor": "Julius",
    "type": "data",
    "openness": "commercial",
    "deployment": "cloud",
    "model_backend": "frontier models (GPT-4/GPT-5, Claude Opus, Gemini; hosted by Julius)",
    "data_handling": "no-train",
    "data_handling_note": "Julius states that user data is not used for internal or external model training. Processing and storage occur in the US; Enterprise provides a DPA. No public HIPAA BAA was confirmed, so regulated health/genetic/clinical data remains excluded.",
    "capability": "strong",
    "backend_dependent": false,
    "suitability": {
      "nonsensitive": "ok",
      "personal": "cfg",
      "special": "no"
    },
    "suitability_notes": {
      "personal": "No-train policy confirmed across all tiers; however, data is uploaded to and stored on Julius cloud servers in the US. For GDPR personal data, require a signed DPA (available at Enterprise tier). On lower tiers without a DPA, treat as 'no'.",
      "special": "Cloud-only. ZDR / HIPAA-BAA is a contractual assurance, but data still leaves your environment — not appropriate for identifiable or controlled-access (DUA) health/genetic data. Use a tool that runs on infrastructure you control, and confirm with your DPO / IRB."
    },
    "compliance": [
      "SOC 2 Type II",
      "GDPR",
      "CCPA",
      "TX-RAMP"
    ],
    "pricing": "Free; Plus $20 monthly/$16 annual; Pro $45/$37; Max $200/$166; Ultra $500/$416; Business $450/$375; Enterprise custom.",
    "academic": "50% discount for students and educators on all plans",
    "use_cases": [
      "natural language data analysis",
      "data visualization",
      "reproducible notebooks",
      "database querying (Snowflake, BigQuery, PostgreSQL)",
      "automated reports",
      "slide/presentation generation",
      "Excel/CSV/PDF analysis"
    ],
    "runs_locally": false,
    "links": {
      "docs": "https://julius.ai/docs/get-started/privacy-and-data-security",
      "pricing": "https://julius.ai/pricing",
      "privacy": "https://julius.ai/privacy-policy"
    },
    "notes": "Cloud data-analysis service with a public no-training commitment. A current official DPA is available; US processing/storage and the absence of a confirmed public BAA remain material boundaries.",
    "sources": [
      "https://julius.ai/privacy-policy",
      "https://julius.ai/security",
      "https://julius.ai/legal/dpa",
      "https://julius.ai/pricing",
      "https://julius.ai/docs/get-started/privacy-and-data-security"
    ],
    "status": "active",
    "current_name": "Julius AI",
    "confidence": "high",
    "verified": "2026-07-13",
    "established": false,
    "tier_gate": "paid / Enterprise tier; verify retention",
    "date_modified": "2026-07-13",
    "software_license": null,
    "license_status": "proprietary",
    "special_route": {
      "status": "not-appropriate",
      "boundary": "none",
      "inference": "none",
      "required_controls": [],
      "residual_risks": [
        "Cloud-only. ZDR / HIPAA-BAA is a contractual assurance, but data still leaves your environment — not appropriate for identifiable or controlled-access (DUA) health/genetic data. Use a tool that runs on infrastructure you control, and confirm with your DPO / IRB."
      ]
    }
  },
  {
    "id": "rca-hex-magic",
    "date_added": "2026-06-21",
    "name": "Hex Magic",
    "vendor": "Hex Technologies",
    "type": "data",
    "openness": "commercial",
    "deployment": "cloud",
    "model_backend": "OpenAI and Anthropic (hosted; BYOK on Enterprise)",
    "data_handling": "no-train",
    "data_handling_note": "Hex uses provider no-training/ZDR arrangements, but Hex itself may use AI-session data for feature improvement unless the organization opts out. Personal-data use requires contractual controls, DPA, and appropriate residency; uploaded/output data still traverses Hex infrastructure.",
    "capability": "strong",
    "backend_dependent": false,
    "suitability": {
      "nonsensitive": "ok",
      "personal": "cfg",
      "special": "no"
    },
    "suitability_notes": {
      "personal": "No-train by default across all tiers, but DPA requires a formal agreement (Hex will enter DPAs with customers on request). For GDPR personal data, use the EU multi-tenant stack (Team or Enterprise) and execute a DPA with Hex. Free/Community tier: no DPA path, treat as unsuitable for personal data.",
      "special": "Cloud-only. ZDR / HIPAA-BAA is a contractual assurance, but data still leaves your environment — not appropriate for identifiable or controlled-access (DUA) health/genetic data. Use a tool that runs on infrastructure you control, and confirm with your DPO / IRB."
    },
    "compliance": [
      "SOC 2 Type II",
      "HIPAA (BAA available)",
      "GDPR",
      "CCPA",
      "EU-U.S. Data Privacy Framework"
    ],
    "pricing": "Community (free, up to 5 notebooks) - Professional ($36/editor/month) - Team ($75/editor/month) - Enterprise (custom). Academic: Professional plan free for students and educators at universities/bootcamps (contact [email protected]). Non-profits also qualify for free access.",
    "academic": "Professional plan free for students and educators (email [email protected]); non-profits also eligible.",
    "use_cases": [
      "collaborative data analysis",
      "SQL/Python notebooks",
      "AI-assisted code and query generation",
      "data app publishing",
      "warehouse-native analytics"
    ],
    "runs_locally": false,
    "links": {
      "docs": "https://learn.hex.tech/docs",
      "pricing": "https://hex.tech/pricing/",
      "privacy": "https://learn.hex.tech/docs/trust/ai-data-privacy"
    },
    "notes": "Collaborative cloud analytics environment. Provider ZDR is not equivalent to Hex deleting or never using all AI-session data; organization opt-out and contract scope must be checked.",
    "sources": [
      "https://learn.hex.tech/docs/trust/ai-data-privacy",
      "https://hex.tech/security/",
      "https://trust.hex.tech",
      "https://hex.tech/pricing/",
      "https://hex.tech/blog/hipaa-multi-tenant/"
    ],
    "status": "active",
    "current_name": "Hex Magic",
    "confidence": "high",
    "verified": "2026-07-13",
    "established": false,
    "tier_gate": "Team/Enterprise + DPA and appropriate data stack",
    "date_modified": "2026-07-13",
    "software_license": null,
    "license_status": "proprietary",
    "special_route": {
      "status": "not-appropriate",
      "boundary": "none",
      "inference": "none",
      "required_controls": [],
      "residual_risks": [
        "Cloud-only. ZDR / HIPAA-BAA is a contractual assurance, but data still leaves your environment — not appropriate for identifiable or controlled-access (DUA) health/genetic data. Use a tool that runs on infrastructure you control, and confirm with your DPO / IRB."
      ]
    }
  },
  {
    "id": "rca-kiro",
    "date_added": "2026-06-21",
    "name": "Kiro",
    "vendor": "Amazon Web Services (AWS)",
    "type": "ide",
    "openness": "commercial",
    "deployment": "cloud",
    "model_backend": "Amazon Bedrock (Anthropic Claude Opus/Sonnet/Haiku 4.x variants, DeepSeek v3.2, MiniMax M2.5, GLM-5, Kimi, Qwen; \"Auto\" mode selects dynamically)",
    "data_handling": "no-train",
    "data_handling_note": "Free and individual subscribers may have content used for service improvement/model training by default; individuals can opt out. Enterprise data is documented as not stored or used for improvement. Paid individual status alone does not establish no-training or no-storage.",
    "capability": "frontier",
    "backend_dependent": false,
    "suitability": {
      "nonsensitive": "ok",
      "personal": "cfg",
      "special": "no"
    },
    "suitability_notes": {
      "personal": "Use Enterprise with its no-storage/no-improvement terms and appropriate institutional AWS agreements; individual paid plans are insufficient by themselves.",
      "special": "Cloud inference only. HIPAA eligibility or contractual controls do not satisfy this index's controlled-infrastructure requirement."
    },
    "compliance": [
      "HIPAA eligible on documented Kiro services; contractual scope applies"
    ],
    "pricing": "Free: 50 credits/month (Claude Sonnet 4.5 + open-weight models). Pro: $19-20/month, 1,000 credits. Pro+: $40/month, 2,000 credits. Pro Max: $100/month, 5,000 credits. Power: $200/month, 10,000 credits. Overages: $0.04/credit across paid tiers. Team/Enterprise: mirrors individual pricing with centralized billing, SSO, and governance. GovCloud pricing ~20% higher. New subscribers get $20 credit on first upgrade.",
    "academic": "Student program: eligible university students (limited list including CMU, Georgia Tech, NYU, U Toronto, U Waterloo, UT Austin, U Chicago, and others) get 1,000 credits/month free for one year via SheerID verification; no credit card required. Startup program: up to one year of free Pro+ access. No general researcher or academic institutional discount documented.",
    "use_cases": [
      "Spec-driven agentic software development (requirements.md -> design.md -> tasks.md -> code)",
      "Autonomous background coding agent (web/cloud sandboxes)",
      "Terminal/pipeline automation via CLI",
      "Code review integration (GitHub/GitLab)",
      "AWS-native development (Lambda, ECS, Bedrock, CloudFormation, CDK)",
      "Multi-tool integration (Figma, Postman, Datadog, Terraform, CI/CD)",
      "Property-based testing and validation",
      "Parallel agent workflows across large codebases"
    ],
    "runs_locally": false,
    "links": {
      "docs": "https://kiro.dev/docs/",
      "pricing": "https://kiro.dev/pricing/",
      "privacy": "https://kiro.dev/docs/privacy-and-security/data-protection/"
    },
    "notes": "Local IDE client with cloud inference. Enterprise, not paid individual status, is the documented no-storage/no-improvement route; product-scoped compliance must not be inferred from unrelated AWS services.",
    "sources": [
      "https://kiro.dev/docs/privacy-and-security/data-protection/",
      "https://kiro.dev/docs/privacy-and-security/compliance-validation/",
      "https://kiro.dev/pricing/",
      "https://kiro.dev/docs/",
      "https://kiro.dev/docs/web/data-protection/"
    ],
    "status": "active",
    "current_name": "Kiro",
    "confidence": "high",
    "verified": "2026-07-13",
    "established": false,
    "tier_gate": "Enterprise",
    "date_modified": "2026-07-13",
    "software_license": null,
    "license_status": "proprietary",
    "special_route": {
      "status": "not-appropriate",
      "boundary": "none",
      "inference": "none",
      "required_controls": [],
      "residual_risks": [
        "Cloud inference only. HIPAA eligibility or contractual controls do not satisfy this index's controlled-infrastructure requirement."
      ]
    }
  },
  {
    "id": "rca-zed",
    "date_added": "2026-06-21",
    "name": "Zed",
    "vendor": "Zed Industries",
    "type": "ide",
    "openness": "open-core",
    "deployment": "local-capable",
    "model_backend": "Claude (default, via Anthropic), GPT-4/Codex, Gemini, Amazon Bedrock, xAI Grok, Ollama (local), BYO API key for any provider, Zeta (open-weight edit-prediction model, self-hostable)",
    "data_handling": "local",
    "data_handling_note": "No training on user data by default across all tiers - codified in Terms of Service effective March 2, 2026. Zero data retention agreements with Anthropic, Google, OpenAI, and xAI for Zed-hosted models, with one exception: Anthropic Mythos-class models (e.g. Claude Fable 5) retain prompts/outputs for 30 days for safety review (not training), and this applies even with BYO Anthropic API key. Free/Personal tier is not risky for training but the Anthropic safety-retention exception applies to any tier. Business tier adds org-wide admin controls to lock data-sharing settings off by default and prevent members from opting in. DPA available upon request. BYO key or local Ollama routes data under the respective provider's or local server's terms. SOC 2 Type 1 certification in progress (not yet issued as of mid-2026).",
    "capability": "frontier",
    "backend_dependent": true,
    "suitability": {
      "nonsensitive": "ok",
      "personal": "cfg",
      "special": "cfg"
    },
    "suitability_notes": {
      "personal": "Use a fully local model, or a provider/DPA configuration accepted by the institution. Hosted models process data outside local infrastructure.",
      "special": "Requires Ollama or another fully local/self-hosted endpoint on controlled infrastructure. Hosted Zed/provider models are not acceptable."
    },
    "compliance": [
      "GDPR rights and DPA pathway; verify contract and provider scope"
    ],
    "pricing": "Personal free; Pro $10/month; Business $30/seat/month. Current official plan details and usage credits vary by model.",
    "academic": "Verified students receive the Student plan free for one year, with Pro features except Claude Opus and $10 monthly credits.",
    "use_cases": [
      "AI-assisted code editing with agentic multi-file editing",
      "Parallel agent threads for simultaneous tasks across a project",
      "Local/private coding with Ollama integration (data stays on machine)",
      "BYO API key setup for privacy-conscious researchers",
      "Edit prediction via open-weight Zeta model (self-hostable)",
      "MCP server integration for extended tool access",
      "Terminal Threads for running Claude Code or Amp as sidebar agents",
      "Git commit message generation",
      "Multiplayer real-time collaboration"
    ],
    "runs_locally": true,
    "links": {
      "docs": "https://zed.dev/docs/ai/overview",
      "pricing": "https://zed.dev/pricing",
      "privacy": "https://zed.dev/docs/ai/privacy-and-security"
    },
    "notes": "Local-capable editor with hosted, BYOK, and fully local model routes. Special-category suitability applies only to the fully local route; no pending certification should be presented as achieved.",
    "sources": [
      "https://zed.dev/docs/ai/privacy-and-security",
      "https://zed.dev/privacy-policy",
      "https://zed.dev/pricing",
      "https://zed.dev/docs/ai/plans-and-usage",
      "https://zed.dev/education",
      "https://zed.dev/docs/ai/overview",
      "https://github.com/zed-industries/zed"
    ],
    "status": "active",
    "current_name": "Zed",
    "confidence": "high",
    "verified": "2026-07-13",
    "established": false,
    "tier_gate": "fully local model for sensitive data; Business for organization controls",
    "date_modified": "2026-07-13",
    "software_license": null,
    "license_status": "unconfirmed",
    "special_route": {
      "status": "config-required",
      "boundary": "customer-controlled",
      "inference": "local-only",
      "required_controls": [
        "Requires Ollama or another fully local/self-hosted endpoint on controlled infrastructure. Hosted Zed/provider models are not acceptable."
      ],
      "residual_risks": [
        "Conditional route: revalidate the exact deployment, model endpoint, integrations, telemetry, and institutional approval before use."
      ]
    }
  },
  {
    "id": "rca-amp",
    "date_added": "2026-06-21",
    "name": "Amp",
    "vendor": "Amp Frontier Corporation (spun out of Sourcegraph December 2025)",
    "type": "cli",
    "openness": "commercial",
    "deployment": "cloud",
    "model_backend": "Claude Opus 4.8 (smart mode), GPT-5.5 (rush/deep modes); always uses latest frontier models - backend is non-configurable, managed by Amp",
    "data_handling": "zdr",
    "data_handling_note": "Enterprise provider ZDR covers model inputs/outputs, but Amp itself stores threads/customer content in US infrastructure. Explicit deletion may take up to 30 days; enterprise workspace threads may persist for the contract term, and provider caches may last up to 24 hours.",
    "capability": "frontier",
    "backend_dependent": false,
    "suitability": {
      "nonsensitive": "ok",
      "personal": "cfg",
      "special": "no"
    },
    "suitability_notes": {
      "personal": "Only after confirming a signed DPA and accepting Amp's own thread/content retention; provider ZDR is not end-to-end deletion.",
      "special": "The service prohibits sensitive personal information including health/genetic data and remains cloud-based."
    },
    "compliance": [
      "SOC 2 Type II",
      "GDPR (SCCs for EEA transfers, rights obligations in privacy policy)"
    ],
    "pricing": "Pay-as-you-go with zero markup on LLM API costs for individual/team users. Minimum credit purchase: $5. Unused credits expire after 1 year of inactivity. Free tier: ~$10/day in credits (replenished hourly), ad-supported initially then ads removed March 2026 - still offered as daily free allowance. Enterprise: +50% cost over individual pricing; unlocks ZDR, SSO/SCIM, audit logging, MCP allowlists, managed settings. Enterprise onboarding starts with a $1,000 minimum purchase.",
    "academic": "No dedicated academic or student discount program found. The free tier ($10/day credits, no payment required) is available to all users including researchers. No evidence of institutional or academic pricing.",
    "use_cases": [
      "Agentic software development across entire codebases",
      "Multi-platform agent management (CLI started, monitored via web or mobile)",
      "Parallel subagent workloads",
      "Code review and diff staging",
      "MCP server integration for custom tooling",
      "Long-running autonomous coding tasks with context compaction"
    ],
    "runs_locally": false,
    "links": {
      "docs": "https://ampcode.com/manual",
      "pricing": "https://ampcode.com/manual#pricing",
      "privacy": "https://ampcode.com/privacy-policy"
    },
    "notes": "Cloud coding agent. Distinguish model-provider ZDR from Amp's own storage of threads and customer content; no public DPA was confirmed during this audit.",
    "sources": [
      "https://ampcode.com/security",
      "https://ampcode.com/privacy-policy",
      "https://ampcode.com/terms",
      "https://ampcode.com/manual#pricing",
      "https://ampcode.com/manual",
      "https://ampcode.com/news/drop-the-neo"
    ],
    "status": "active",
    "current_name": "Amp",
    "confidence": "high",
    "verified": "2026-07-13",
    "established": false,
    "tier_gate": "Enterprise + confirm signed DPA and retention terms",
    "date_modified": "2026-07-13",
    "software_license": null,
    "license_status": "proprietary",
    "special_route": {
      "status": "not-appropriate",
      "boundary": "none",
      "inference": "none",
      "required_controls": [],
      "residual_risks": [
        "The service prohibits sensitive personal information including health/genetic data and remains cloud-based."
      ]
    }
  },
  {
    "id": "rca-sourcegraph-cody",
    "date_added": "2026-06-21",
    "name": "Sourcegraph Cody",
    "vendor": "Sourcegraph",
    "type": "ide",
    "openness": "commercial",
    "deployment": "cloud / self-hostable / on-prem",
    "model_backend": "Anthropic Claude (Opus 4.8, Sonnet 4.6, Haiku 4.5 + Thinking variants), OpenAI GPT-5/GPT-4o/o3/o4-mini, Google Gemini 2.5/3 series, DeepSeek V2 Lite Base (autocomplete); BYOK/BYOLLM supported on Enterprise",
    "data_handling": "zdr",
    "data_handling_note": "Zero data retention (ZDR) is guaranteed on Enterprise: partner LLMs discard prompts and outputs immediately after generating a response, and Sourcegraph itself does not use code to train models. On the discontinued free/pro tiers, prompts were collected for service improvement (though not for training). For self-hosted Enterprise deployments with BYOK/BYOLLM, Sourcegraph does not receive prompts or responses at all - they stay entirely inside the customer perimeter. The default cloud Enterprise tier still routes through Sourcegraph's gateway to third-party LLM APIs (Anthropic, OpenAI, Google), but with contractual ZDR and no-training guarantees.",
    "capability": "frontier",
    "backend_dependent": true,
    "suitability": {
      "nonsensitive": "ok",
      "personal": "cfg",
      "special": "no"
    },
    "suitability_notes": {
      "personal": "Cloud Enterprise tier has contractual no-train + ZDR guarantees and SOC 2 Type II / GDPR compliance, which satisfies most GDPR-pseudonymised data requirements under a DPA - but only on the Enterprise plan. Self-hosted deployment with BYOK keeps data fully inside the organisation perimeter and is the stronger option for GDPR-sensitive research data.",
      "special": "Cloud-first: the AI runs in the vendor cloud by default (zdr). Only an enterprise on-prem / self-hosted deployment on infrastructure you control could suit special-category data — and only with DPO/IRB approval; the default cloud product is not suitable."
    },
    "compliance": [
      "SOC 2 Type II",
      "GDPR",
      "CCPA",
      "ISO/IEC 27001:2022",
      "EU AI Act"
    ],
    "pricing": "Enterprise platform pricing starts around $16,000/year and includes AI credits; contact sales. Free, Pro, and Enterprise Starter ended 2025-07-23.",
    "academic": "No published academic or student discount. Free and Pro tiers were discontinued in July 2025. Researchers must purchase Enterprise ($59/user/month, annual). Contact sales for possible institutional pricing.",
    "use_cases": [
      "Multi-repo codebase understanding and architecture queries",
      "AI chat, inline edit, and autocomplete in VS Code, JetBrains, Visual Studio (experimental)",
      "Context-aware code generation drawing on millions of lines across repositories",
      "Automated prompt workflows (custom Prompts feature)",
      "Debug, explain, and refactor code with enterprise codebase context",
      "Terminal command execution from chat",
      "Large-scale research or bioinformatics pipelines with complex cross-repo dependencies"
    ],
    "runs_locally": false,
    "links": {
      "docs": "https://sourcegraph.com/docs/cody",
      "pricing": "https://sourcegraph.com/pricing",
      "privacy": "https://sourcegraph.com/terms/cody-notice"
    },
    "notes": "Active enterprise-only coding assistant integrated with Sourcegraph. Prior self-service plans have ended; assess current model-provider routing and Cody notice under the enterprise contract.",
    "sources": [
      "https://sourcegraph.com/terms/cody-notice",
      "https://sourcegraph.com/docs/model-provider",
      "https://sourcegraph.com/pricing",
      "https://sourcegraph.com/docs/cody/faq",
      "https://sourcegraph.com/blog/changes-to-cody-free-pro-and-enterprise-starter-plans",
      "https://sourcegraph.com/changelog/releases"
    ],
    "status": "active",
    "current_name": "Sourcegraph Cody",
    "confidence": "high",
    "verified": "2026-07-13",
    "established": false,
    "tier_gate": "Enterprise / self-hosted",
    "date_modified": "2026-07-13",
    "software_license": null,
    "license_status": "proprietary",
    "special_route": {
      "status": "not-appropriate",
      "boundary": "none",
      "inference": "none",
      "required_controls": [],
      "residual_risks": [
        "Cloud-first: the AI runs in the vendor cloud by default (zdr). Only an enterprise on-prem / self-hosted deployment on infrastructure you control could suit special-category data — and only with DPO/IRB approval; the default cloud product is not suitable."
      ]
    }
  },
  {
    "id": "rca-opencode",
    "date_added": "2026-06-21",
    "name": "OpenCode",
    "vendor": "OpenCode (opencode.ai / anomalyco)",
    "type": "cli",
    "openness": "open-source",
    "deployment": "local-capable / cloud",
    "model_backend": "BYO-key (75+ providers via Models.dev: Claude, GPT, Gemini, AWS Bedrock, Groq, Azure, OpenRouter, Ollama, LM Studio, llama.cpp and others); optional hosted gateway (Zen pay-as-you-go, Go $10/mo, Black enterprise)",
    "data_handling": "local",
    "data_handling_note": "OpenCode can use fully local providers, but OpenCode Zen is not uniformly ZDR: official documentation reports 30-day retention for OpenAI and Anthropic requests, and some free models may retain or train. Sharing must be disabled for private work and every selected provider must be reviewed.",
    "capability": "frontier",
    "backend_dependent": true,
    "suitability": {
      "nonsensitive": "ok",
      "personal": "cfg",
      "special": "cfg"
    },
    "suitability_notes": {
      "personal": "Use a fully local provider, or verify the exact Zen/provider retention and DPA. Do not assume Zen-wide ZDR.",
      "special": "Requires a fully local model and disabled sharing on controlled infrastructure. Zen/cloud providers are not acceptable."
    },
    "compliance": [],
    "pricing": "OpenCode is open source. OpenCode Zen is pay-as-you-go with automatic $20 reload when balance falls below $5; model charges vary.",
    "academic": "No academic or student discount found as of June 2026. The free BYOK tier is available to all users.",
    "use_cases": [
      "Terminal-first AI coding agent (TUI)",
      "Multi-provider LLM coding assistant",
      "Local/offline AI coding with Ollama or llama.cpp",
      "Multi-session parallel agents on same codebase",
      "Enterprise coding agent with internal LLM gateway",
      "LSP-integrated code editing with AI",
      "MCP tool integration for coding agents",
      "GitHub Copilot / ChatGPT Plus account integration"
    ],
    "runs_locally": true,
    "links": {
      "docs": "https://opencode.ai/docs/enterprise/",
      "pricing": "https://opencode.ai/zen",
      "privacy": "https://opencode.ai/legal/privacy-policy"
    },
    "notes": "Open-source coding agent with local, direct-provider, and Zen routes. Privacy is route-specific; remove volatile launch/version/star claims and never describe Zen as uniformly zero-retention.",
    "sources": [
      "https://opencode.ai/legal/privacy-policy",
      "https://opencode.ai/legal/terms-of-service",
      "https://opencode.ai/docs/providers/",
      "https://opencode.ai/docs/zen/",
      "https://opencode.ai/docs/share/",
      "https://opencode.ai/docs/enterprise/",
      "https://github.com/anomalyco/opencode"
    ],
    "status": "active",
    "current_name": "OpenCode",
    "confidence": "medium",
    "verified": "2026-07-13",
    "established": false,
    "tier_gate": "fully local model with sharing disabled for regulated data",
    "date_modified": "2026-07-13",
    "software_license": "MIT",
    "license_status": "confirmed",
    "special_route": {
      "status": "config-required",
      "boundary": "customer-controlled",
      "inference": "local-only",
      "required_controls": [
        "Requires a fully local model and disabled sharing on controlled infrastructure. Zen/cloud providers are not acceptable."
      ],
      "residual_risks": [
        "Conditional route: revalidate the exact deployment, model endpoint, integrations, telemetry, and institutional approval before use."
      ]
    }
  },
  {
    "id": "rca-crush",
    "date_added": "2026-06-21",
    "name": "Crush",
    "vendor": "Charmbracelet (Charm)",
    "type": "cli",
    "openness": "open-core",
    "deployment": "local-capable",
    "model_backend": "BYOK: Anthropic, OpenAI, Google Gemini, Groq, AWS Bedrock, Azure OpenAI, Vertex AI, OpenRouter, Hugging Face, Cerebras, Fireworks, and any OpenAI-compatible or Anthropic-compatible endpoint; also local via Ollama, LM Studio, LiteLLM, MLX",
    "data_handling": "local",
    "data_handling_note": "Crush is a local CLI (BYOK) - the tool itself only collects pseudonymous usage metrics tied to a device hash; prompts and responses are explicitly never collected by Charmbracelet. Opt-out via CRUSH_DISABLE_METRICS=1 or DO_NOT_TRACK=1. Supports fully air-gapped operation with local models (Ollama, LM Studio, LiteLLM, MLX). When using cloud LLM providers, data handling is governed by those providers. The optional managed Charm Hyper backend (free: 100 credits/month; $20/month: 250 daily credits) has its own privacy policy: prompts/outputs never used to train models, content not stored by default (max 30 days if retained for debugging), DPA available on request for EEA/UK/Swiss users, GDPR-compliant via Standard Contractual Clauses. No SOC 2, ISO 27001, or HIPAA BAA found for Hyper. Default free tier of Hyper routes content through cloud; local-only deployment is the safest path for sensitive data.",
    "capability": "frontier",
    "backend_dependent": true,
    "suitability": {
      "nonsensitive": "ok",
      "personal": "cfg",
      "special": "cfg"
    },
    "suitability_notes": {
      "personal": "Use local models (Ollama, LM Studio) or air-gapped mode to keep GDPR-regulated data fully on-device - no data leaves the machine. If using cloud providers (Anthropic, OpenAI, etc.) or Charm Hyper, review each provider's DPA; Hyper offers a DPA on request for EEA/UK/Swiss users but has no SOC 2 or HIPAA BAA. Local deployment with CRUSH_DISABLE_METRICS=1 is the recommended configuration.",
      "special": "Requires a fully local model, provider updates disabled/offline, metrics disabled, and controlled execution. FSL-1.1-MIT is source-available and converts later; it is not presently an OSI open-source license."
    },
    "compliance": [
      "GDPR (Charm Hyper backend, via SCCs; DPA on request for EEA/UK/CH)",
      "CCPA (Charm Hyper backend)",
      "DO_NOT_TRACK convention respected"
    ],
    "pricing": "Crush CLI is free and source-available under FSL-1.1-MIT. No charge from Charmbracelet; you pay your chosen LLM provider's API rates. Optional Charm Hyper managed backend: free tier (100 Hypercredits/month), $20/month subscription (250 daily refreshing credits), prepaid bundles ($5=100 credits, $10=500 credits, $20=2000 credits; 1 Hypercredit = $0.05). Local model use (Ollama etc.) has zero ongoing cost.",
    "academic": "No academic or student pricing exists for Crush itself. The CLI is free to all users. Academic discounts on LLM API costs depend on individual provider programs (e.g., Google, Anthropic, OpenAI). Local model use is free and suitable for academic environments.",
    "use_cases": [
      "Agentic code generation and editing in the terminal",
      "Multi-file codebase exploration and refactoring",
      "LSP-enhanced code context for AI prompting",
      "MCP-extensible tool workflows",
      "Local/offline coding with privacy-sensitive code via Ollama",
      "Multi-model mid-session switching for cost/quality tradeoffs",
      "Shared backend workspaces via crush serve (experimental)",
      "Air-gapped or restricted-network deployments"
    ],
    "runs_locally": true,
    "links": {
      "docs": "https://github.com/charmbracelet/crush",
      "pricing": "https://hyper.charm.land",
      "privacy": "https://hyper.charm.land/privacy"
    },
    "notes": "Local-capable coding agent under FSL-1.1-MIT (source-available, future conversion to MIT). Sensitive-data use requires a fully local/offline model and disabled metrics/provider updates.",
    "sources": [
      "https://hyper.charm.land/privacy",
      "https://hyper.charm.land",
      "https://github.com/charmbracelet/crush",
      "https://github.com/charmbracelet/crush/releases"
    ],
    "status": "active",
    "current_name": "Crush",
    "confidence": "high",
    "verified": "2026-07-13",
    "established": false,
    "tier_gate": "",
    "date_modified": "2026-07-13",
    "software_license": "FSL-1.1-MIT",
    "license_status": "source-available",
    "special_route": {
      "status": "config-required",
      "boundary": "customer-controlled",
      "inference": "local-only",
      "required_controls": [
        "Requires a fully local model, provider updates disabled/offline, metrics disabled, and controlled execution. FSL-1.1-MIT is source-available and converts later; it is not presently an OSI open-source license."
      ],
      "residual_risks": [
        "Conditional route: revalidate the exact deployment, model endpoint, integrations, telemetry, and institutional approval before use."
      ]
    }
  },
  {
    "id": "rca-mistral-vibe",
    "date_added": "2026-06-21",
    "name": "Mistral Vibe",
    "vendor": "Mistral AI",
    "type": "cli",
    "openness": "open-core",
    "deployment": "cloud / local-capable / self-hostable",
    "model_backend": "Devstral 2 (123B, open-weight, modified MIT) and Devstral Small 2 (24B, Apache 2.0) by default; Mistral Medium 3.5 for remote agents; any OpenAI-compatible local endpoint configurable (Ollama, vLLM, llama.cpp, LM Studio)",
    "data_handling": "local",
    "data_handling_note": "Free, Pro, and Education accounts use inputs/outputs for training by default unless the user opts out. Team and Enterprise do not train. Approved Scale customers may receive ZDR; Vibe CLI stateless API calls can use that scope. Offline/local models create a separate controlled-infrastructure route.",
    "capability": "frontier",
    "backend_dependent": true,
    "suitability": {
      "nonsensitive": "ok",
      "personal": "cfg",
      "special": "cfg"
    },
    "suitability_notes": {
      "personal": "Use Team/Enterprise no-training terms or approved Scale ZDR with an appropriate DPA; consumer opt-out alone is weaker.",
      "special": "Requires Vibe with a fully local model on controlled infrastructure. Cloud no-training/ZDR is not sufficient."
    },
    "compliance": [
      "GDPR",
      "SOC 2 Type II",
      "ISO 27001",
      "ISO 27701",
      "DPA available for commercial customers"
    ],
    "pricing": "Free: basic access, approximately 25 messages/day; Pro: $14.99/month; Team: $24.99/user/month; Enterprise: custom; Education/student offer: $5.99/month where eligible. Free, Pro, and Education inputs/outputs are eligible for training by default unless the user opts out. Team and Enterprise inputs/outputs are not used for training. API usage is billed separately.",
    "academic": "Student plan at 5.99/month (vs. 14.99 standard Pro), valid up to 12 months for verified students at accredited higher education institutions. Requires institutional email and ID verification. New accounts only. Does not include API token credits - IDE/script use billed separately. Additionally, Devstral Small 2 (Apache 2.0) can be downloaded and self-hosted for free with no subscription required.",
    "use_cases": [
      "Multi-file code refactoring",
      "Automated test generation",
      "Pull request review and creation",
      "Legacy code migration",
      "Agentic terminal coding (long-running autonomous tasks)",
      "IDE-integrated coding assistance (VS Code, JetBrains, Zed)",
      "Codebase-wide context and search",
      "GitHub/GitLab/Jira/Linear integration",
      "Local/air-gapped coding with self-hosted Devstral Small 2",
      "Research software engineering and scripting",
      "API documentation generation"
    ],
    "runs_locally": true,
    "links": {
      "docs": "https://docs.mistral.ai/vibe/code/cli/offline-models",
      "pricing": "https://mistral.ai/products/vibe/code/",
      "privacy": "https://legal.mistral.ai/terms/privacy-policy"
    },
    "notes": "Current stable release v2.19.1 (2026-07-09). Training defaults differ by account class; remove unverified EU-default-storage and certification assertions.",
    "sources": [
      "https://help.mistral.ai/en/articles/347617-do-you-use-my-user-data-to-train-your-artificial-intelligence-models",
      "https://help.mistral.ai/en/articles/347612-can-i-activate-zero-data-retention-zdr",
      "https://legal.mistral.ai/terms/privacy-policy",
      "https://mistral.ai/pricing/",
      "https://mistral.ai/products/vibe/code/",
      "https://docs.mistral.ai/vibe/code/cli/offline-models",
      "https://github.com/mistralai/mistral-vibe"
    ],
    "status": "active",
    "current_name": "Mistral Vibe",
    "confidence": "high",
    "verified": "2026-07-13",
    "established": false,
    "tier_gate": "Team/Enterprise no-training; approved Scale ZDR; fully local model for special data",
    "date_modified": "2026-07-13",
    "software_license": null,
    "license_status": "unconfirmed",
    "special_route": {
      "status": "config-required",
      "boundary": "customer-controlled",
      "inference": "local-only",
      "required_controls": [
        "Requires Vibe with a fully local model on controlled infrastructure. Cloud no-training/ZDR is not sufficient."
      ],
      "residual_risks": [
        "Conditional route: revalidate the exact deployment, model endpoint, integrations, telemetry, and institutional approval before use."
      ]
    }
  },
  {
    "id": "rca-kiro-cli",
    "date_added": "2026-06-21",
    "name": "Kiro CLI",
    "vendor": "AWS (Amazon Web Services)",
    "type": "cli",
    "openness": "commercial",
    "deployment": "cloud",
    "model_backend": "Amazon Bedrock (Anthropic Claude Opus 4.8/4.7/4.6/4.5, Sonnet 4.6/4.5/4.0, Haiku 4.5; open-weight models: MiniMax M2.5/M2.1, GLM-5, DeepSeek 3.2, Qwen3 Coder Next; Auto router default)",
    "data_handling": "no-train",
    "data_handling_note": "Free and individual users may have content used for improvement/training by default; paid individual status does not itself establish no-training. Enterprise is the documented no-storage/no-improvement route. CLI execution is local but inference is cloud-based.",
    "capability": "frontier",
    "backend_dependent": false,
    "suitability": {
      "nonsensitive": "ok",
      "personal": "cfg",
      "special": "no"
    },
    "suitability_notes": {
      "personal": "Use Enterprise terms with institutional AWS agreements; individual paid/social-login plans are insufficient by themselves.",
      "special": "Cloud inference only; not suitable under the controlled-infrastructure rule."
    },
    "compliance": [
      "HIPAA (explicitly listed for Kiro IDE and CLI)",
      "FedRAMP High (in progress, GovCloud)",
      "AWS shared-responsibility model (SOC 2/ISO 27001 via AWS infrastructure - confirm scope via AWS Artifact)",
      "TLS 1.2+ in transit",
      "AWS KMS at rest (customer-managed keys available for enterprise)"
    ],
    "pricing": "Free: 50 credits/month (Claude Sonnet 4.5-class, open-weight models, no training only if IAM IdP auth); Pro: $20/month (1,000 credits); Pro+: $40/month (2,000 credits); Pro Max: $100/month (5,000 credits); Power: $200/month (10,000 credits). Overage: $0.04/credit across all paid tiers. GovCloud pricing ~20% higher; free tier unavailable there. Startup program: up to 1 year of free Pro+. Enterprise: custom/contact sales with centralized billing and organizational dashboard.",
    "academic": "Students from 11 eligible universities (including Arizona State, Carnegie Mellon, Georgia Tech, NYU, University of Waterloo) receive 1,000 credits/month free for one year via the Kiro for Students program; verified through SheerID with a university email (.edu/.ca); no credit card required; converts to free tier after one year. See kiro.dev/students/.",
    "use_cases": [
      "Terminal-based AI-assisted coding and chat (spec-driven development)",
      "Custom agentic workflows via hooks and custom agents",
      "MCP (Model Context Protocol) integration with external tools and data sources",
      "CI/CD pipeline automation with headless API-key auth",
      "Context-aware shell autocomplete",
      "AWS-native development with IAM/SSO auth",
      "Regulated/government workloads via GovCloud deployment",
      "Migration path from Amazon Q Developer CLI (backward-compatible q and q chat entry points)"
    ],
    "runs_locally": false,
    "links": {
      "docs": "https://kiro.dev/docs/cli/",
      "pricing": "https://kiro.dev/pricing/",
      "privacy": "https://kiro.dev/docs/cli/privacy-and-security/data-protection/"
    },
    "notes": "Terminal client for Kiro's cloud inference. Apply the same enterprise data-protection boundary as the IDE; do not infer no-training from payment alone.",
    "sources": [
      "https://kiro.dev/docs/cli/privacy-and-security/data-protection/",
      "https://kiro.dev/docs/cli/privacy-and-security/compliance-validation/",
      "https://kiro.dev/pricing/",
      "https://kiro.dev/docs/cli/"
    ],
    "status": "active",
    "current_name": "Kiro CLI",
    "confidence": "high",
    "verified": "2026-07-13",
    "established": false,
    "tier_gate": "Enterprise",
    "date_modified": "2026-07-13",
    "software_license": null,
    "license_status": "proprietary",
    "special_route": {
      "status": "not-appropriate",
      "boundary": "none",
      "inference": "none",
      "required_controls": [],
      "residual_risks": [
        "Cloud inference only; not suitable under the controlled-infrastructure rule."
      ]
    }
  },
  {
    "id": "rca-warp",
    "date_added": "2026-06-21",
    "name": "Warp",
    "vendor": "Warp (warpdotdev)",
    "type": "cli",
    "openness": "open-core",
    "deployment": "cloud / self-hostable (execution layer only; orchestration remains Warp-cloud)",
    "model_backend": "OpenAI, Anthropic, Google Gemini, Amazon Bedrock, LiteLLM, OpenRouter, custom inference; BYOK supported; Enterprise allows BYOLLM",
    "data_handling": "zdr",
    "data_handling_note": "Warp contracts model providers for ZDR/no-training, but Warp's own AI/console collection is a separate control. Business and Enterprise disable that collection by default; Free can opt out with effects on AI availability. Self-hosting covers execution-plane components, not the cloud orchestration/control plane.",
    "capability": "frontier",
    "backend_dependent": true,
    "suitability": {
      "nonsensitive": "ok",
      "personal": "cfg",
      "special": "no"
    },
    "suitability_notes": {
      "personal": "Use Business/Enterprise with DPA and collection disabled; confirm all connected model and orchestration processors.",
      "special": "Warp's control/orchestration plane remains cloud-based even with self-hosted execution components; not suitable under this index's rule."
    },
    "compliance": [
      "SOC 2 Type 2",
      "GDPR (SCCs via DPA)",
      "UK GDPR Addendum"
    ],
    "pricing": "Free ($0, limited AI credits, limited cloud agents); Build ($20/month or $18/month annual, 1,500 AI credits, BYOK, full model access); Max ($200/month or $180/month annual, 18,000 credits); Business ($50/user/month or $45/user/month annual, up to 50 seats, team ZDR, SAML SSO); Enterprise (custom pricing, self-hosted execution, BYOLLM, white-glove onboarding). No documented academic or student discount; a Campus Lead ambassador program exists but provides no direct pricing benefit.",
    "academic": "No formal academic or student discount. Free tier includes full terminal features and limited AI. A Campus Lead program exists for student evangelists but does not reduce pricing. No evidence of educational institution deals.",
    "use_cases": [
      "Terminal-native agentic coding and code generation",
      "Multi-agent orchestration via Oz platform (webhook/CI-triggered cloud agents)",
      "Codebase indexing and search across large codebases",
      "Running and orchestrating external CLI agents (Claude Code, Codex, Gemini CLI)",
      "Automated PR creation, issue triage, spec writing via cloud agents",
      "Team-wide AI-assisted terminal workflows with centralized governance",
      "BYOK / BYOLLM enterprise deployments with self-hosted execution"
    ],
    "runs_locally": false,
    "links": {
      "docs": "https://docs.warp.dev",
      "pricing": "https://www.warp.dev/pricing",
      "privacy": "https://www.warp.dev/privacy"
    },
    "notes": "Cloud-orchestrated terminal/agent. Separate provider ZDR from Warp collection, and do not treat self-hosted execution-plane components as full on-prem deployment.",
    "sources": [
      "https://docs.warp.dev/support-and-community/privacy-and-security/privacy",
      "https://docs.warp.dev/enterprise/security-and-compliance/security-overview",
      "https://www.warp.dev/legal/privacy-policy",
      "https://www.warp.dev/legal/security",
      "https://www.warp.dev/legal/data-processing-addendum",
      "https://www.warp.dev/pricing"
    ],
    "status": "active",
    "current_name": "Warp",
    "confidence": "high",
    "verified": "2026-07-13",
    "established": false,
    "tier_gate": "Business or Enterprise",
    "date_modified": "2026-07-13",
    "software_license": null,
    "license_status": "unconfirmed",
    "special_route": {
      "status": "not-appropriate",
      "boundary": "none",
      "inference": "none",
      "required_controls": [],
      "residual_risks": [
        "Warp's control/orchestration plane remains cloud-based even with self-hosted execution components; not suitable under this index's rule."
      ]
    }
  },
  {
    "id": "rca-augment-code",
    "date_added": "2026-06-21",
    "name": "Augment Code",
    "vendor": "Augment Inc.",
    "type": "cli",
    "openness": "commercial",
    "deployment": "cloud / self-hostable / on-prem",
    "model_backend": "Proprietary multi-model routing (Augment Context Engine + Claude Opus/Sonnet, GPT-5.5, Gemini Flash, Kimi K2 via configurable \"Prism\" router); BYO-key (BYOK) supported in Enterprise",
    "data_handling": "zdr",
    "data_handling_note": "Paid plans state that customer data is not used for training. Public documentation advertises VPC, single-tenant, on-prem, BYOK, CMEK, and residency options, but ZDR plan scope was not sufficiently explicit to generalize beyond a negotiated enterprise contract.",
    "capability": "frontier",
    "backend_dependent": false,
    "suitability": {
      "nonsensitive": "ok",
      "personal": "cfg",
      "special": "no"
    },
    "suitability_notes": {
      "personal": "GDPR-compliant with DPA and Standard Contractual Clauses available; ZDR requires Business or Enterprise tier. On-premises/VPC deployment (Enterprise) keeps data fully in-house. Default Trial/Indie tier lacks explicit retention controls and should not be used for pseudonymised personal data without verifying DPA terms.",
      "special": "Cloud-first: the AI runs in the vendor cloud by default (zdr). Only an enterprise on-prem / self-hosted deployment on infrastructure you control could suit special-category data — and only with DPO/IRB approval; the default cloud product is not suitable."
    },
    "compliance": [
      "SOC 2 Type II",
      "ISO/IEC 42001",
      "HIPAA BAA available",
      "GDPR",
      "CCPA",
      "CMEK",
      "BYOK"
    ],
    "pricing": "Business $100/month for the whole team (up to 50 seats, including $100 usage); Enterprise custom.",
    "academic": "No dedicated academic or student discount is publicly listed. Open-source contributors/maintainers may qualify for complimentary access. Researchers should contact Augment sales to inquire about research or institutional pricing.",
    "use_cases": [
      "Agentic codebase-aware code generation and editing via terminal",
      "Large codebase indexing (400k+ files) with semantic Context Engine",
      "CI/CD automation and headless PR review in GitHub Actions / Jenkins",
      "Multi-agent coordination (triage, implementation, PR authoring, code review)",
      "MCP-based integration with GitHub, Linear, Jira, and external tools",
      "Parallel sub-agent workflows for security audits and test generation",
      "Enterprise software development at scale with compliance requirements"
    ],
    "runs_locally": false,
    "links": {
      "docs": "https://docs.augmentcode.com/cli/overview",
      "pricing": "https://www.augmentcode.com/pricing",
      "privacy": "https://www.augmentcode.com/legal/privacy-policy"
    },
    "notes": "Commercial coding platform with current Business team pricing and negotiated enterprise deployment controls. Remove obsolete Indie/Standard/Max tiers and unsupported trust-center availability claims.",
    "sources": [
      "https://www.augmentcode.com/security",
      "https://www.augmentcode.com/legal/privacy-policy",
      "https://trust.augmentcode.com",
      "https://www.augmentcode.com/pricing",
      "https://docs.augmentcode.com/cli/overview",
      "https://www.augmentcode.com/product/cli",
      "https://www.augmentcode.com/contact"
    ],
    "status": "active",
    "current_name": "Augment Code (Auggie CLI)",
    "confidence": "high",
    "verified": "2026-07-13",
    "established": false,
    "tier_gate": "Enterprise contract for ZDR/on-prem controls",
    "date_modified": "2026-07-13",
    "software_license": null,
    "license_status": "proprietary",
    "special_route": {
      "status": "not-appropriate",
      "boundary": "none",
      "inference": "none",
      "required_controls": [],
      "residual_risks": [
        "Cloud-first: the AI runs in the vendor cloud by default (zdr). Only an enterprise on-prem / self-hosted deployment on infrastructure you control could suit special-category data — and only with DPO/IRB approval; the default cloud product is not suitable."
      ]
    }
  },
  {
    "id": "rca-jules",
    "date_added": "2026-06-21",
    "name": "Jules",
    "vendor": "Google (Google Labs)",
    "type": "cloud",
    "openness": "commercial",
    "deployment": "cloud",
    "model_backend": "Gemini models managed by Google; Free currently uses Gemini 2.5 Pro and paid plans receive newer model access",
    "data_handling": "no-train",
    "data_handling_note": "Google states that private repositories are not used for training; do not extend that statement to public repositories. Task VMs are destroyed, but persisted product memory/context is a separate retention boundary. Current Jules plans are individual Google-account plans, with no public Jules-specific DPA, institutional residency control, or retention SLA confirmed.",
    "capability": "frontier",
    "backend_dependent": false,
    "suitability": {
      "nonsensitive": "ok",
      "personal": "no",
      "special": "no"
    },
    "suitability_notes": {
      "personal": "No public Jules-specific DPA, retention SLA, or institutional residency control was confirmed. Do not submit personal data.",
      "special": "Cloud-only and no institutional controlled-infrastructure route exists. Do not submit health/genetic/clinical data."
    },
    "compliance": [
      "No Jules-specific compliance certifications published",
      "Google Cloud holds SOC 2, ISO 27001, and HIPAA BAA but Jules is a Google Labs product not explicitly covered",
      "GDPR DPA must be requested via enterprise channels"
    ],
    "pricing": "Free: 15 tasks/day and 3 concurrent; Pro: 100/day and 15 concurrent; Ultra: 300/day and 60 concurrent. Subscription prices depend on the current localized Google AI plan.",
    "academic": "No current Jules-specific institutional or academic plan was verified.",
    "use_cases": [
      "Automated bug fixing",
      "Multi-file code changes via pull requests",
      "Writing and running tests",
      "Dependency version bumping",
      "Feature implementation from issue descriptions",
      "CI/CD integration via GitHub Actions",
      "Async coding tasks in background while developer works on other things",
      "Audio changelog generation"
    ],
    "runs_locally": false,
    "links": {
      "docs": "https://jules.google/docs/api/reference",
      "pricing": "https://jules.google.com/",
      "privacy": "https://cloud.google.com/terms/cloud-privacy-notice"
    },
    "notes": "Out of beta cloud coding agent for individual Google accounts. Private repositories are excluded from training, but product memory and missing institutional contract controls prevent a personal-data recommendation.",
    "sources": [
      "https://jules.google/docs/usage-limits",
      "https://jules.google/docs/faq/",
      "https://jules.google/docs/environment/",
      "https://jules.google/docs/changelog/"
    ],
    "status": "active",
    "current_name": "Jules",
    "confidence": "medium",
    "verified": "2026-07-13",
    "established": false,
    "tier_gate": "no institutional personal-data route publicly verified",
    "date_modified": "2026-07-13",
    "software_license": null,
    "license_status": "proprietary",
    "special_route": {
      "status": "not-appropriate",
      "boundary": "none",
      "inference": "none",
      "required_controls": [],
      "residual_risks": [
        "Cloud-only and no institutional controlled-infrastructure route exists. Do not submit health/genetic/clinical data."
      ]
    }
  },
  {
    "id": "rca-mini-swe-agent",
    "date_added": "2026-07-13",
    "date_modified": "2026-07-13",
    "name": "mini-SWE-agent",
    "vendor": "SWE-agent academic open-source project",
    "type": "cli",
    "openness": "open-source",
    "deployment": "local-capable",
    "model_backend": "Any supported model through LiteLLM, including local Ollama models",
    "data_handling": "local",
    "data_handling_note": "The tool can run with a fully local model and local/Docker/Singularity/Apptainer execution so code and prompts remain on controlled infrastructure. Cloud model providers create separate processing boundaries. The default local environment executes commands directly on the host and should not be used for untrusted tasks without isolation.",
    "capability": "frontier",
    "backend_dependent": true,
    "suitability": {
      "nonsensitive": "ok",
      "personal": "cfg",
      "special": "cfg"
    },
    "suitability_notes": {
      "personal": "Use a fully local model and isolated execution, or independently approve the selected cloud provider under a DPA.",
      "special": "Requires a fully local model plus controlled Docker/Singularity/Apptainer execution. Cloud models and unisolated host execution are not acceptable."
    },
    "compliance": [
      "self-hosted"
    ],
    "pricing": "Free and open source (MIT); users pay only any selected cloud-model provider costs",
    "academic": "Free academic open-source project",
    "use_cases": [
      "autonomous issue resolution",
      "software-engineering agent research",
      "SWE-bench-style evaluation",
      "trajectory generation in isolated environments"
    ],
    "runs_locally": true,
    "links": {
      "docs": "https://mini-swe-agent.com/latest/quickstart/",
      "pricing": "https://github.com/SWE-agent/mini-swe-agent",
      "privacy": "https://mini-swe-agent.com/latest/models/local_models/"
    },
    "sources": [
      "https://mini-swe-agent.com/latest/quickstart/",
      "https://mini-swe-agent.com/latest/models/local_models/",
      "https://mini-swe-agent.com/latest/advanced/environments/",
      "https://github.com/SWE-agent/mini-swe-agent/releases"
    ],
    "status": "active",
    "current_name": "mini-SWE-agent",
    "confidence": "high",
    "verified": "2026-07-13",
    "established": false,
    "tier_gate": "fully local model + isolated execution for regulated data",
    "notes": "Actively maintained successor to SWE-agent; stable v2.3.0 was current at verification. The default host execution is not isolated, so sensitive/untrusted work should use a controlled container or HPC isolation backend.",
    "software_license": "MIT",
    "license_status": "confirmed",
    "special_route": {
      "status": "config-required",
      "boundary": "customer-controlled",
      "inference": "local-only",
      "required_controls": [
        "Requires a fully local model plus controlled Docker/Singularity/Apptainer execution. Cloud models and unisolated host execution are not acceptable."
      ],
      "residual_risks": [
        "Conditional route: revalidate the exact deployment, model endpoint, integrations, telemetry, and institutional approval before use."
      ]
    }
  },
  {
    "id": "rca-gptme",
    "date_added": "2026-06-21",
    "name": "gptme",
    "vendor": "Erik Bjare / gptme open-source community",
    "type": "cli",
    "openness": "open-source",
    "deployment": "local-capable / optional hosted service",
    "model_backend": "Anthropic (Claude), OpenAI (GPT), Google (Gemini), xAI (Grok), DeepSeek, OpenRouter (100+ models), Azure, local via Ollama / llama-cpp-python",
    "data_handling": "local",
    "data_handling_note": "The open-source tool can run locally/self-hosted, but gptme now also presents a managed service. Hosted-service retention, training, DPA, and residency terms were not adequately documented. Local execution runs with the user's permissions and should use a container or restricted account.",
    "capability": "strong",
    "backend_dependent": true,
    "suitability": {
      "nonsensitive": "ok",
      "personal": "cfg",
      "special": "cfg"
    },
    "suitability_notes": {
      "personal": "Use a fully local model and controlled execution. Do not use the hosted path for personal data until contractual processing terms are published and accepted.",
      "special": "Requires a fully local model plus container/restricted-user execution on controlled infrastructure. Hosted/cloud model routes are not acceptable."
    },
    "compliance": [],
    "pricing": "Free and open-source (MIT). No subscription tiers. API costs are paid directly to whichever LLM provider the user chooses. Running with local models (Ollama, llama-cpp-python) incurs no API costs at all.",
    "academic": "No academic discount program exists - the tool itself is free. Researchers at institutions with cloud LLM credits (e.g. Anthropic research access, Azure academic agreements) can apply those directly.",
    "use_cases": [
      "Autonomous coding agent in the terminal",
      "Literature review and web research automation (built-in researcher subagent profile)",
      "Data pipeline scripting and execution",
      "File editing and patching via shell or Python",
      "Multi-step autonomous agent loops (gptme-agent-template)",
      "Self-hosted LLM orchestration on laptops, HPC login nodes, or CI/CD",
      "Vision tasks (screenshots, image analysis)",
      "MCP tool integration and multi-agent orchestration"
    ],
    "runs_locally": true,
    "links": {
      "docs": "https://gptme.org/docs/index.html",
      "pricing": "https://gptme.org/",
      "privacy": "https://gptme.org/docs/security.html"
    },
    "notes": "Local-capable coding agent with an emerging managed-service path. Privacy claims are confined to the local configuration; no blanket OpenRouter deny-collection guarantee is asserted.",
    "sources": [
      "https://gptme.org/docs/providers.html",
      "https://gptme.org/docs/getting-started.html",
      "https://gptme.org/docs/security.html",
      "https://gptme.org/docs/contributing.html",
      "https://gptme.ai/pricing"
    ],
    "status": "active",
    "current_name": "gptme",
    "confidence": "high",
    "verified": "2026-07-13",
    "established": false,
    "tier_gate": "fully local/self-hosted model for regulated data",
    "date_modified": "2026-07-13",
    "software_license": "MIT",
    "license_status": "confirmed",
    "special_route": {
      "status": "config-required",
      "boundary": "customer-controlled",
      "inference": "local-only",
      "required_controls": [
        "Requires a fully local model plus container/restricted-user execution on controlled infrastructure. Hosted/cloud model routes are not acceptable."
      ],
      "residual_risks": [
        "Conditional route: revalidate the exact deployment, model endpoint, integrations, telemetry, and institutional approval before use."
      ]
    }
  },
  {
    "id": "rca-open-interpreter",
    "date_added": "2026-06-21",
    "name": "Open Interpreter",
    "vendor": "Open Interpreter, Inc.",
    "type": "cli",
    "openness": "open-source",
    "deployment": "local-capable / optional hosted inference",
    "model_backend": "Current Rust desktop/CLI agent derived from Codex; local models, direct BYO-key providers, or Open Interpreter-hosted inference",
    "data_handling": "local",
    "data_handling_note": "The current Rust product replaces the former Python implementation (now community-maintained separately). Local models can remain on-device; BYO-key requests go directly to the provider. Open Interpreter-hosted requests traverse its infrastructure and may be logged for up to 30 days. No adequate public DPA, BAA, certification, or residency evidence was confirmed for hosted mode.",
    "capability": "strong",
    "backend_dependent": true,
    "suitability": {
      "nonsensitive": "ok",
      "personal": "cfg",
      "special": "cfg"
    },
    "suitability_notes": {
      "personal": "Use the current client with a fully local model, or independently contract the direct provider. Do not use Open Interpreter-hosted inference for personal data without adequate terms.",
      "special": "Requires a fully local model on controlled infrastructure. Hosted and direct cloud-provider routes are not acceptable."
    },
    "compliance": [],
    "pricing": "Free: open-source CLI, BYO API keys or Ollama local models (pip install). Pro: $20/month (hosted models, 4x usage, document editing, priority support). Business: $60/month (team management, 3x usage over Pro). No academic or student discount found.",
    "academic": "No academic or student discount programme found as of June 2026. The open-source CLI is freely available to all users with BYO API keys or local models at no cost.",
    "use_cases": [
      "local coding and shell automation",
      "computer and file task automation",
      "code generation and execution",
      "agentic workflows with local or direct-provider models"
    ],
    "runs_locally": true,
    "links": {
      "docs": "https://www.openinterpreter.com/cli",
      "pricing": "https://www.openinterpreter.com/",
      "privacy": "https://www.openinterpreter.com/privacy"
    },
    "notes": "Current Rust product, distinct from the former Python implementation. Local, direct-provider, and Open Interpreter-hosted routes have different data boundaries; old offline/telemetry documentation must not be carried forward.",
    "sources": [
      "https://www.openinterpreter.com/",
      "https://www.openinterpreter.com/cli",
      "https://github.com/openinterpreter/openinterpreter",
      "https://www.openinterpreter.com/privacy"
    ],
    "status": "active",
    "current_name": "Open Interpreter",
    "confidence": "high",
    "verified": "2026-07-13",
    "established": false,
    "tier_gate": "fully local model for personal/special-category data",
    "date_modified": "2026-07-13",
    "software_license": "Apache-2.0",
    "license_status": "confirmed",
    "special_route": {
      "status": "config-required",
      "boundary": "customer-controlled",
      "inference": "local-only",
      "required_controls": [
        "Requires a fully local model on controlled infrastructure. Hosted and direct cloud-provider routes are not acceptable."
      ],
      "residual_risks": [
        "Conditional route: revalidate the exact deployment, model endpoint, integrations, telemetry, and institutional approval before use."
      ]
    }
  },
  {
    "id": "rca-kilo-code",
    "date_added": "2026-06-21",
    "name": "Kilo Code",
    "vendor": "Kilo Code, Inc. (Amsterdam)",
    "type": "ide",
    "openness": "open-source",
    "deployment": "cloud / local-capable",
    "model_backend": "BYOK (500+ models via OpenRouter / direct providers: Anthropic, OpenAI, Google, etc.) or local via Ollama / LM Studio / Atomic Chat; optional Kilo Gateway (pay-as-you-go, no markup)",
    "data_handling": "local",
    "data_handling_note": "Kilo supports fully local Ollama/LM Studio and local indexing. Official materials state no prompt/output retention on paid plans, but this must not be generalized to every free cloud route. Cloud terms prohibit regulated sensitive data.",
    "capability": "frontier",
    "backend_dependent": true,
    "suitability": {
      "nonsensitive": "ok",
      "personal": "cfg",
      "special": "cfg"
    },
    "suitability_notes": {
      "personal": "Prefer fully local inference/indexing, or use a paid plan only after confirming DPA and retention scope.",
      "special": "Requires fully local Ollama/LM Studio and local indexing on controlled infrastructure. Kilo cloud routes prohibit regulated sensitive data."
    },
    "compliance": [
      "SOC 2 materials available through Trust Center; public type/scope not confirmed"
    ],
    "pricing": "Free (open-source extension + CLI, BYOK); $20 free credits on signup; Kilo Gateway pay-as-you-go at exact provider rates (zero markup); Kilo Pass subscription $19/month (Starter), $49/month (Pro), $199/month (Expert); Teams $15/user/month (14-day trial); Enterprise custom pricing. KiloClaw (managed cloud agent hosting) $55/month separately.",
    "academic": "No academic or student discount programme found on the pricing page. The free tier (BYOK + $20 credits) and open-source nature make it accessible without a special discount.",
    "use_cases": [
      "Agentic code generation and multi-file editing in VS Code and JetBrains",
      "Automated code review with inline line-level comments",
      "Multi-agent parallel task execution via Agent Manager and git worktrees",
      "Local/air-gap coding with Ollama or LM Studio for privacy-sensitive work",
      "CLI-based agentic coding and automation pipelines",
      "Cloud agents and Slack-integrated agents for 24/7 autonomous tasks",
      "Codebase understanding and context-aware refactoring",
      "Model comparison and cost benchmarking across 500+ providers"
    ],
    "runs_locally": true,
    "links": {
      "docs": "https://kilo.ai/docs/getting-started",
      "pricing": "https://kilo.ai/pricing",
      "privacy": "https://kilo.ai/privacy"
    },
    "notes": "Local and cloud coding-agent routes. The special-category recommendation applies only to fully local inference and indexing; paid-cloud no-retention wording is not a universal product guarantee.",
    "sources": [
      "https://kilo.ai/pricing",
      "https://kilo.ai/security-and-compliance",
      "https://kilo.ai/privacy",
      "https://kilo.ai/terms",
      "https://kilo.ai/docs/ai-providers/ollama",
      "https://kilo.ai/docs/customize/context/codebase-indexing",
      "https://github.com/Kilo-Org/kilocode"
    ],
    "status": "active",
    "current_name": "Kilo Code",
    "confidence": "medium",
    "verified": "2026-07-13",
    "established": false,
    "tier_gate": "fully local model and local indexing for special-category data; paid/enterprise terms for cloud",
    "date_modified": "2026-07-13",
    "software_license": "MIT",
    "license_status": "confirmed",
    "special_route": {
      "status": "config-required",
      "boundary": "customer-controlled",
      "inference": "local-only",
      "required_controls": [
        "Requires fully local Ollama/LM Studio and local indexing on controlled infrastructure. Kilo cloud routes prohibit regulated sensitive data."
      ],
      "residual_risks": [
        "Conditional route: revalidate the exact deployment, model endpoint, integrations, telemetry, and institutional approval before use."
      ]
    }
  },
  {
    "id": "rca-google-colab-data-science-agent",
    "date_added": "2026-06-21",
    "name": "Google Colab (Data Science Agent)",
    "vendor": "Google",
    "type": "cloud",
    "openness": "commercial",
    "deployment": "cloud",
    "model_backend": "Managed Gemini backend; Google does not currently document one fixed model for all Data Science Agent use",
    "data_handling": "no-train",
    "data_handling_note": "Consumer Colab AI may collect prompts, code, outputs, usage, and feedback for product/model improvement, including human review and retention up to 18 months; Google warns against sensitive/personal data. Colab Enterprise provides contractual Cloud controls but remains cloud-based.",
    "capability": "strong",
    "backend_dependent": false,
    "suitability": {
      "nonsensitive": "ok",
      "personal": "cfg",
      "special": "no"
    },
    "suitability_notes": {
      "personal": "Use Colab Enterprise only with an accepted Cloud DPA and governance configuration; consumer Colab AI is not suitable.",
      "special": "Cloud-only. Do not use for special-category data under this index's controlled-infrastructure rule."
    },
    "compliance": [
      "Google Cloud controls only where the exact Colab Enterprise service, region, and contract are in scope"
    ],
    "pricing": "Consumer Colab plan pricing varies. Colab Enterprise Data Science Agent is billed at $3 per million input tokens and $20 per million output tokens, plus compute.",
    "academic": "No separate current academic privacy tier was confirmed; consumer educational use does not change data-handling terms.",
    "use_cases": [
      "Automated EDA (exploratory data analysis) from natural language prompts",
      "Full Python notebook generation for data cleaning, visualisation, predictive modelling",
      "Statistical analysis and feature engineering",
      "BigQuery-scale data processing with DataFrames and BigQuery ML",
      "Distributed computing via Apache Spark 4.0",
      "Interactive chart generation (histogram, scatter, box plots)",
      "NLP Q&A over uploaded datasets",
      "Reproducible research notebooks with Gemini-generated code",
      "Model training and evaluation within notebook environment"
    ],
    "runs_locally": false,
    "links": {
      "docs": "https://docs.cloud.google.com/colab/docs/use-data-science-agent",
      "pricing": "https://cloud.google.com/vertex-ai/pricing",
      "privacy": "https://docs.cloud.google.com/gemini/docs/discover/data-governance"
    },
    "notes": "Cloud notebook agent. Consumer and Enterprise data terms differ substantially; avoid fixed model identities and broad GCP certifications without product/region/contract scope.",
    "sources": [
      "https://research.google.com/colaboratory/faq.html",
      "https://docs.cloud.google.com/colab/docs/use-data-science-agent",
      "https://cloud.google.com/colab/pricing"
    ],
    "status": "active",
    "current_name": "Google Colab (Data Science Agent)",
    "confidence": "high",
    "verified": "2026-07-13",
    "established": false,
    "tier_gate": "Colab Enterprise + Cloud DPA/governance for personal data",
    "date_modified": "2026-07-13",
    "software_license": null,
    "license_status": "proprietary",
    "special_route": {
      "status": "not-appropriate",
      "boundary": "none",
      "inference": "none",
      "required_controls": [],
      "residual_risks": [
        "Cloud-only. Do not use for special-category data under this index's controlled-infrastructure rule."
      ]
    }
  },
  {
    "id": "rca-deepnote",
    "date_added": "2026-06-21",
    "name": "Deepnote",
    "vendor": "Deepnote",
    "type": "cloud",
    "openness": "open-core",
    "deployment": "cloud / Enterprise on-prem or customer-managed single-tenant",
    "model_backend": "OpenAI (GPT-5), Anthropic (Sonnet 4.6); BYO-LLM on Enterprise tier",
    "data_handling": "no-train",
    "data_handling_note": "Deepnote Cloud uses vendor AI providers under no-training/retention terms. Enterprise custom-model settings can route the agent, edits, and suggestions to a customer-controlled endpoint, but native code completions continue through Deepnote's provider unless separately disabled. Block-output sharing is another separate control. A controlled route therefore requires explicit configuration; an Enterprise or customer-managed deployment alone is not sufficient.",
    "capability": "frontier",
    "backend_dependent": true,
    "suitability": {
      "nonsensitive": "ok",
      "personal": "cfg",
      "special": "cfg"
    },
    "suitability_notes": {
      "personal": "Personal/pseudonymised data (GDPR): DPA is available to all customer tiers (not enterprise-only), incorporates EU Standard Contractual Clauses (2021/914), and covers GDPR/UK GDPR/Swiss FADP. No-train policy is stated. However, data is stored and processed in the US (no EU data residency guarantee by default). cfg = use with a signed DPA, disable block-output sharing, and confirm your team plan includes DPA coverage. Enterprise single-tenancy with possible EU residency (contact sales) would upgrade this to closer to ok.",
      "special": "Only a customer-managed Enterprise deployment with a customer-controlled model endpoint can qualify. Disable native code completions, make native AI providers unavailable, disable block-output sharing, review every integration, and obtain institutional approval. Deepnote Cloud does not qualify."
    },
    "compliance": [
      "SOC 2 Type II",
      "GDPR (DPA with SCCs, all tiers)",
      "UK GDPR",
      "CPRA",
      "HIPAA (Enterprise tier with BAA)"
    ],
    "pricing": "Free tier: up to 3 editors, 5 projects, limited AI, unlimited basic compute (5 GB RAM/2 vCPU), 7-day revision history. Team: $39/editor/month (annual billing, 20% discount); unlimited editors/viewers/notebooks, GPT-5 + Sonnet 4.6 AI access, premium DB integrations (BigQuery, Snowflake, Redshift), scheduled runs, 30-day revision history, bundled compute credits. Enterprise: custom pricing; all Team features plus SSO, audit logs, HIPAA compliance, single-tenancy, BYO-LLM, dedicated success manager, volume discounts.",
    "academic": "No formal academic/student discount program listed on pricing page. GitHub README mentions free access for students and educators - likely available via application; not surfaced in main pricing UI. No dedicated academic tier confirmed.",
    "use_cases": [
      "Collaborative data science notebooks (Python, R, SQL)",
      "AI-assisted data analysis and code generation (Deepnote Agent / Auto AI)",
      "Data team workflows with real-time multiplayer editing",
      "Database querying and exploration (100+ native integrations)",
      "Scheduled notebook execution and background jobs",
      "Deploying data apps and API endpoints from notebooks",
      "Version-controlled notebooks with YAML format (.deepnote) for git workflows",
      "Local notebook development with VS Code/Cursor/Windsurf extensions"
    ],
    "runs_locally": true,
    "links": {
      "docs": "https://deepnote.com/docs",
      "pricing": "https://deepnote.com/pricing",
      "privacy": "https://deepnote.com/docs/ai-data-privacy"
    },
    "notes": "Cloud collaborative notebook with Enterprise customer-managed/on-prem deployment options. Local file tooling is not a complete local AI product; special-category suitability requires the controlled Enterprise deployment plus local inference.",
    "sources": [
      "https://deepnote.com/docs/ai-data-privacy",
      "https://deepnote.com/pricing",
      "https://deepnote.com/docs/security-overview",
      "https://deepnote.com/enterprise",
      "https://deepnote.com/docs/local-setup",
      "https://deepnote.com/docs/acceptable-use-policy",
      "https://deepnote.com/docs/ai-custom-models"
    ],
    "status": "active",
    "current_name": "Deepnote",
    "confidence": "high",
    "verified": "2026-07-13",
    "established": false,
    "tier_gate": "Enterprise on-prem/customer-managed deployment + approved local model for special data",
    "date_modified": "2026-07-13",
    "software_license": null,
    "license_status": "unconfirmed",
    "special_route": {
      "status": "config-required",
      "boundary": "customer-controlled",
      "inference": "customer-controlled-endpoint",
      "required_controls": [
        "Enterprise customer-managed deployment behind the institutional boundary",
        "Customer-controlled model endpoint for agent, edits, and suggestions",
        "Native code completions disabled",
        "Native Deepnote AI providers unavailable",
        "Block-output sharing disabled",
        "All integrations and subprocessors reviewed",
        "DPO or data-steward approval before use"
      ],
      "residual_risks": [
        "Product updates may introduce or re-enable cloud AI paths; configuration must be rechecked after upgrades."
      ]
    }
  },
  {
    "id": "rca-databricks-genie-code",
    "date_added": "2026-06-21",
    "name": "Databricks Genie Code",
    "vendor": "Databricks",
    "type": "cloud",
    "openness": "commercial",
    "deployment": "cloud",
    "model_backend": "Azure OpenAI / OpenAI (via \"partner-powered AI features\") and Anthropic (Claude) on Databricks; falls back to Databricks-hosted open-source models (e.g. OpenAI GPT OSS variants) when partner-powered features are disabled by admin. Backend is Databricks-managed; users cannot swap models themselves.",
    "data_handling": "no-train",
    "data_handling_note": "Partner-model contracts may provide no-training/ZDR, but Databricks stores Genie Code chat history with notebook/control-plane content and agents may inspect outputs/data samples. Provider ZDR is therefore not end-to-end deletion.",
    "capability": "frontier",
    "backend_dependent": false,
    "suitability": {
      "nonsensitive": "ok",
      "personal": "cfg",
      "special": "no"
    },
    "suitability_notes": {
      "personal": "No-train + zero-retention is the default, and Databricks has GDPR/ISO 27701 coverage, but data is processed in Databricks cloud. A DPA must be in place (contact Databricks account team). EU data residency requires selecting an EU geo region. For pseudonymised research data under GDPR, this is workable with a signed DPA and EU geo; cfg reflects the need for those contractual/config steps.",
      "special": "Cloud-only. ZDR / HIPAA-BAA is a contractual assurance, but data still leaves your environment — not appropriate for identifiable or controlled-access (DUA) health/genetic data. Use a tool that runs on infrastructure you control, and confirm with your DPO / IRB."
    },
    "compliance": [
      "Contract-, cloud-, region-, and compliance-profile dependent; verify exact Databricks service scope"
    ],
    "pricing": "Billing began 2026-07-08. Official example: 150 DBUs is approximately $10.50 in US East; compute is additional and regional pricing varies.",
    "academic": "No dedicated academic discount program documented publicly. Databricks University Alliance exists for institutions and research groups, but academic pricing requires direct engagement with the Databricks sales team. A free $400 trial credit is available for new accounts.",
    "use_cases": [
      "Autonomous multi-step data pipeline engineering (Lakeflow)",
      "ML model training, experiment tracking (MLflow integration), and model deployment",
      "AI/BI dashboard generation and analysis",
      "SQL query building and optimization in SQL Editor",
      "Notebook-based data science and EDA automation",
      "Agentic debugging of pipeline failures and errors",
      "Scheduled autonomous data operations (overnight jobs, pipeline summarization)",
      "GenAI application development and debugging"
    ],
    "runs_locally": false,
    "links": {
      "docs": "https://docs.databricks.com/aws/en/genie-code/",
      "pricing": "https://www.databricks.com/product/pricing/genie",
      "privacy": "https://docs.databricks.com/aws/en/databricks-ai/databricks-ai-trust"
    },
    "notes": "Cloud data-platform agent. Distinguish partner-model ZDR from Databricks persistence of chats, notebook content, outputs, and samples; remove speculative future compliance claims.",
    "sources": [
      "https://docs.databricks.com/aws/en/genie-code",
      "https://docs.databricks.com/aws/en/genie/budgets",
      "https://www.databricks.com/product/pricing/genie",
      "https://docs.databricks.com/aws/en/databricks-ai/databricks-ai-trust",
      "https://docs.databricks.com/aws/en/security/privacy/hipaa"
    ],
    "status": "active",
    "current_name": "Databricks Genie Code",
    "confidence": "high",
    "verified": "2026-07-13",
    "established": false,
    "tier_gate": "appropriate Databricks contract, region, compliance profile, and workspace governance",
    "date_modified": "2026-07-13",
    "software_license": null,
    "license_status": "proprietary",
    "special_route": {
      "status": "not-appropriate",
      "boundary": "none",
      "inference": "none",
      "required_controls": [],
      "residual_risks": [
        "Cloud-only. ZDR / HIPAA-BAA is a contractual assurance, but data still leaves your environment — not appropriate for identifiable or controlled-access (DUA) health/genetic data. Use a tool that runs on infrastructure you control, and confirm with your DPO / IRB."
      ]
    }
  },
  {
    "id": "rca-posit-ai-posit-assistant",
    "date_added": "2026-06-21",
    "name": "Posit AI / Posit Assistant",
    "vendor": "Posit PBC",
    "type": "ide",
    "openness": "commercial",
    "deployment": "cloud",
    "model_backend": "Anthropic Claude and Posit-hosted Google Gemma 4; Workbench/provider extensions remain preview or experimental",
    "data_handling": "zdr",
    "data_handling_note": "ZDR is specifically documented for the Anthropic route and must not be generalized to Posit-hosted Gemma. With trace sharing disabled, operational metadata is retained for 30 days; opt-in traces may be retained up to five years and used for improvement/training.",
    "capability": "frontier",
    "backend_dependent": false,
    "suitability": {
      "nonsensitive": "ok",
      "personal": "cfg",
      "special": "no"
    },
    "suitability_notes": {
      "personal": "Use the documented Anthropic route with trace sharing disabled and an accepted Posit contract/DPA.",
      "special": "No fully local model path was confirmed for the product; self-hosting the IDE/session alone is insufficient."
    },
    "compliance": [
      "GDPR (EU-US Data Privacy Framework certified by Posit)",
      "CCPA",
      "ZDR with Anthropic (all tiers)",
      "No SOC 2 / ISO 27001 / HIPAA BAA documented for managed cloud tier"
    ],
    "pricing": "$20/month per user (no free tier; free trial with credits available, no credit card required). Includes ~$15 API credits for Posit Assistant chat (Claude Haiku 4.5 / higher models) plus unlimited Next Edit Suggestions. Optional auto top-up for heavy users. No academic/student discount currently; Posit states they are 'actively exploring' academic pricing. RStudio and Positron IDEs themselves remain free and open-source. Posit Workbench (enterprise self-hosted) has separate licensing; BYOK path for AI is included in Workbench but enterprise AI pricing not published.",
    "academic": "No academic discount exists for Posit AI as of June 2026. Posit acknowledges cost barriers and is exploring options but has not launched a program. Posit Cloud (separate product) has a free educational tier (25 project hours/month) but that does not include Posit AI. Posit Workbench has academic/research server pricing available via sales.",
    "use_cases": [
      "R and Python code writing and debugging in RStudio and Positron",
      "Exploratory data analysis with live session context (DataFrames, variables, plots)",
      "ggplot2/tidymodels/Shiny/Streamlit scaffolding",
      "Next Edit Suggestions (inline code completions)",
      "Multi-step agentic tasks via Plan Mode",
      "Codebase understanding and refactoring",
      "Console auditing and reproducible research workflows (Workbench enterprise)"
    ],
    "runs_locally": false,
    "links": {
      "docs": "https://docs.posit.co/posit-ai/",
      "pricing": "https://posit.co/products/ai",
      "privacy": "https://posit.co/about/privacy-policy"
    },
    "notes": "Posit AI product in transition: Databot is deprecated and Posit says Positron Assistant is planned to be superseded in Q3 2026. Treat backend-specific data terms separately.",
    "sources": [
      "https://docs.posit.co/posit-ai/user/faq/",
      "https://docs.posit.co/ide/user/ide/guide/tools/posit-ai.html",
      "https://docs.posit.co/ide/server-pro/admin/positron_sessions/positron-assistant.html",
      "https://posit.co/blog/posit-ai-priced-long-run"
    ],
    "status": "active",
    "current_name": "Posit AI (Posit Assistant)",
    "confidence": "high",
    "verified": "2026-07-13",
    "established": false,
    "tier_gate": "Posit AI subscription + Anthropic backend + trace opt-out",
    "date_modified": "2026-07-13",
    "software_license": null,
    "license_status": "proprietary",
    "special_route": {
      "status": "not-appropriate",
      "boundary": "none",
      "inference": "none",
      "required_controls": [],
      "residual_risks": [
        "No fully local model path was confirmed for the product; self-hosting the IDE/session alone is insufficient."
      ]
    }
  },
  {
    "id": "rca-marimo",
    "date_added": "2026-06-21",
    "name": "marimo",
    "vendor": "marimo (open-source, Apache-2.0)",
    "type": "data",
    "openness": "open-source",
    "deployment": "local-capable / self-hostable / cloud (molab, free beta on CoreWeave)",
    "model_backend": "Local/BYOK providers in marimo; molab additionally offers free hosted models",
    "data_handling": "local",
    "data_handling_note": "The local marimo core can use local or BYOK providers, while molab is a hosted service with separate terms and free hosted models. molab expressly prohibits HIPAA-regulated and GDPR Article 9 special-category data.",
    "capability": "strong",
    "backend_dependent": true,
    "suitability": {
      "nonsensitive": "ok",
      "personal": "cfg",
      "special": "cfg"
    },
    "suitability_notes": {
      "personal": "Local install with Ollama or no AI features: data never leaves machine, fully suitable. If using molab cloud or an external AI API (OpenAI, Anthropic, etc.) the notebook contents and variable context are sent to the configured provider; suitability then depends on that provider's data handling. Configure local-only mode to unlock safe use with personal data.",
      "special": "Self-hosted or local install only, with all AI completions routed to local models (Ollama/LM Studio). molab explicitly prohibits uploading protected health information in its terms. No SOC 2 or HIPAA BAA has been announced; until such certifications exist, cloud molab is unsuitable for special-category data. Local deployment on own infrastructure is the compliant path."
    },
    "compliance": [
      "GDPR (terms reference EU Regulation 2016/679; CCPA service-provider status)",
      "No SOC 2 disclosed",
      "No HIPAA BAA disclosed",
      "No ISO 27001 disclosed"
    ],
    "pricing": "Free and open-source (Apache-2.0). molab cloud is free during beta (4 CPU / 32 GB RAM; optional NVIDIA RTX Pro 6000 GPU; 12-hour sessions; limited persistent storage). No paid tiers announced as of June 2026; marimo cloud was listed as \"closed beta\" on the cloud subdomain. Enterprise/commercial arrangements via demo request.",
    "academic": "No dedicated academic pricing; core tool is fully open-source and free. marimo has run notebook competitions for researchers (molab Notebook Competition). Trusted by Stanford, UC Berkeley, Johns Hopkins, SLAC - no special license needed.",
    "use_cases": [
      "Reactive Python notebook with auto-rerunning cells on dependency change",
      "SQL querying of dataframes (Polars, Pandas, DuckDB, SQLite, Postgres, MySQL)",
      "Interactive data exploration with sliders, plots, tables (no callbacks needed)",
      "Deployment of notebooks as web apps or WebAssembly HTML files",
      "Git-friendly reproducible research (stored as pure .py files)",
      "AI-assisted coding with BYO model key (local or cloud)",
      "Agent-driven notebook sessions via Agent Client Protocol (Claude Code, Codex, Gemini, OpenCode)",
      "JupyterHub/JupyterLab integration via marimo-jupyter-extension",
      "Kubernetes deployment of notebook clusters"
    ],
    "runs_locally": true,
    "links": {
      "docs": "https://docs.marimo.io/",
      "pricing": "https://molab.marimo.io/notebooks",
      "privacy": "https://marimo.io/pages/legal/privacy"
    },
    "notes": "Open-source reactive notebook with local AI-provider support and a separate molab hosted service. Do not describe the product as having no hosted model or claim that its privacy page redirects elsewhere.",
    "sources": [
      "https://docs.marimo.io/guides/editor_features/ai_completion/",
      "https://docs.marimo.io/guides/molab/",
      "https://molab.marimo.io/pages/legal/terms",
      "https://marimo.io/pages/legal/subprocessors",
      "https://marimo.io/pages/legal/privacy",
      "https://github.com/marimo-team/marimo"
    ],
    "status": "active",
    "current_name": "marimo",
    "confidence": "medium",
    "verified": "2026-07-13",
    "established": false,
    "tier_gate": "",
    "date_modified": "2026-07-13",
    "software_license": "Apache-2.0",
    "license_status": "confirmed",
    "special_route": {
      "status": "config-required",
      "boundary": "customer-controlled",
      "inference": "local-only",
      "required_controls": [
        "Self-hosted or local install only, with all AI completions routed to local models (Ollama/LM Studio). molab explicitly prohibits uploading protected health information in its terms. No SOC 2 or HIPAA BAA has been announced; until such certifications exist, cloud molab is unsuitable for special-category data. Local deployment on own infrastructure is the compliant path."
      ],
      "residual_risks": [
        "Conditional route: revalidate the exact deployment, model endpoint, integrations, telemetry, and institutional approval before use."
      ]
    }
  },
  {
    "id": "rca-runcell",
    "date_added": "2026-06-21",
    "name": "Runcell",
    "vendor": "Kanaries Data Inc.",
    "type": "cloud",
    "openness": "commercial",
    "deployment": "cloud",
    "model_backend": "GPT (OpenAI), Claude (Anthropic), Gemini (Google) - accessed via Runcell subscription, no BYO key required; higher tiers unlock access to more advanced models",
    "data_handling": "no-train",
    "data_handling_note": "Paid plans enable Privacy Mode and state no training, but no current public DPA or institutional processor terms were verified. Free/Hobby lacks Privacy Mode. Code snippets/prompts still traverse cloud model routes.",
    "capability": "strong",
    "backend_dependent": false,
    "suitability": {
      "nonsensitive": "ok",
      "personal": "no",
      "special": "no"
    },
    "suitability_notes": {
      "personal": "No current public DPA was verified. Treat personal-data use as blocked unless the institution obtains and approves a signed processor agreement.",
      "special": "Cloud service without a controlled-infrastructure route; not suitable."
    },
    "compliance": [],
    "pricing": "Hobby: 20 credits; Pro $20/500 credits; Pro+ $60/2,000; Ultra $200/10,000; Teams from $40/seat. Privacy Mode is paid-only.",
    "academic": "No dedicated academic or student discount plan found. Tool is used in academic data science teaching contexts but offers no institutional pricing or academic tier as of June 2026.",
    "use_cases": [
      "Autonomous multi-step data analysis in JupyterLab",
      "Long-running ML training jobs (multi-hour, end-to-end)",
      "Cross-session project memory for iterative research workflows",
      "Output-aware reasoning (reads charts, plots, DataFrame previews)",
      "Automated cell execution, debugging, and error recovery",
      "Life-science ML and risk modelling workflows",
      "Interactive learning and algorithm explanation in notebooks",
      "EDA, data cleaning, visualisation, and feature engineering automation"
    ],
    "runs_locally": false,
    "links": {
      "docs": "https://www.runcell.dev/docs",
      "pricing": "https://www.runcell.dev/pricing",
      "privacy": "https://www.runcell.dev/privacy"
    },
    "notes": "Cloud-connected notebook agent. Paid Privacy Mode supplies a no-training statement but not the missing public DPA; no public Enterprise plan was confirmed.",
    "sources": [
      "https://www.runcell.dev/pricing",
      "https://www.runcell.dev/privacy",
      "https://www.runcell.dev/terms",
      "https://www.runcell.dev/docs/credits-consumption-by-feature"
    ],
    "status": "active",
    "current_name": "Runcell",
    "confidence": "medium",
    "verified": "2026-07-13",
    "established": false,
    "tier_gate": "paid Privacy Mode; personal data blocked pending a signed DPA",
    "date_modified": "2026-07-13",
    "software_license": null,
    "license_status": "proprietary",
    "special_route": {
      "status": "not-appropriate",
      "boundary": "none",
      "inference": "none",
      "required_controls": [],
      "residual_risks": [
        "Cloud service without a controlled-infrastructure route; not suitable."
      ]
    }
  },
  {
    "id": "rca-jetbrains-datalore",
    "date_added": "2026-06-21",
    "name": "JetBrains Datalore",
    "vendor": "JetBrains",
    "type": "cloud",
    "openness": "commercial",
    "deployment": "cloud / self-hostable",
    "model_backend": "JetBrains AI in Cloud; On-Premises can use OpenAI, Azure OpenAI, or an OpenAI-compatible self-hosted model",
    "data_handling": "local",
    "data_handling_note": "JetBrains AI Terms explicitly commit to not training on user inputs/outputs/code by any provider. For Cloud paid tier, detailed code-related data requires explicit opt-in consent from organization admins (disabled by default for commercial users). The Cloud Free tier collects analytics by default on legitimate interest with opt-out available. On-Premises deployment: JetBrains states \"We do not see or have access to Your Data,\" giving zero data egress by design. DPA (GDPR) is available for all customers. Default Cloud Free tier carries higher risk; Cloud paid tier is safer with org-level consent controls; On-Premises is the gold standard for data governance.",
    "capability": "strong",
    "backend_dependent": true,
    "suitability": {
      "nonsensitive": "ok",
      "personal": "cfg",
      "special": "cfg"
    },
    "suitability_notes": {
      "personal": "Prefer On-Premises with a self-hosted model, or use Cloud only under an accepted DPA and collection configuration.",
      "special": "Requires Datalore On-Premises/air-gapped deployment plus a self-hosted LLM on controlled infrastructure. Cloud remains unsuitable."
    },
    "compliance": [
      "Deployment- and contract-dependent; verify exact Datalore product scope"
    ],
    "pricing": "Cloud Free and paid plans are listed publicly; On-Premises pricing is custom and must be obtained from JetBrains.",
    "academic": "No dedicated academic pricing; Datalore is classified as a \"Team Tool\" and excluded from JetBrains' free student/teacher IDE pack. Students and researchers must use the Cloud Free tier or purchase paid plans. On-Premises pricing ($1,800/user/year) may be negotiated for institutions.",
    "use_cases": [
      "Jupyter-compatible Python/R/SQL notebooks for data science and research",
      "Collaborative real-time notebook editing for teams",
      "AI-assisted code generation, error fixing, and explanation in notebooks",
      "No-code DataFrame exploration via Data Explorer Cells (2026.1)",
      "Interactive data reports and dashboards shareable without code exposure",
      "Scheduled notebook runs and automation",
      "On-premises deployment for regulated data environments with BYOK AI"
    ],
    "runs_locally": true,
    "links": {
      "docs": "https://www.jetbrains.com/help/datalore/",
      "pricing": "https://www.jetbrains.com/datalore/buy/",
      "privacy": "https://www.jetbrains.com/legal/docs/privacy/privacy/"
    },
    "notes": "Server-based notebook platform with Cloud and On-Premises/air-gapped routes. Controlled-infrastructure suitability requires On-Premises plus a self-hosted model; remove fixed on-prem pricing and overbroad access claims.",
    "sources": [
      "https://www.jetbrains.com/datalore/buy/",
      "https://www.jetbrains.com/help/datalore/configure-ai-assistance.html",
      "https://www.jetbrains.com/help/datalore/datalore-on-premises.html",
      "https://www.jetbrains.com/help/datalore/frequently-asked-questions.html",
      "https://www.jetbrains.com/help/ai-assistant/how-we-handle-your-code-and-data.html"
    ],
    "status": "active",
    "current_name": "JetBrains Datalore",
    "confidence": "high",
    "verified": "2026-07-13",
    "established": false,
    "tier_gate": "Datalore On-Premises + self-hosted LLM",
    "date_modified": "2026-07-13",
    "software_license": null,
    "license_status": "proprietary",
    "special_route": {
      "status": "config-required",
      "boundary": "customer-controlled",
      "inference": "local-only",
      "required_controls": [
        "Requires Datalore On-Premises/air-gapped deployment plus a self-hosted LLM on controlled infrastructure. Cloud remains unsuitable."
      ],
      "residual_risks": [
        "Conditional route: revalidate the exact deployment, model endpoint, integrations, telemetry, and institutional approval before use."
      ]
    }
  },
  {
    "id": "rca-chatgpt-advanced-data-analysis",
    "date_added": "2026-06-21",
    "name": "ChatGPT Data Analysis",
    "vendor": "OpenAI",
    "type": "cloud",
    "openness": "commercial",
    "deployment": "cloud",
    "model_backend": "GPT-5.4 in current ChatGPT availability; model assignment can change by plan and rollout",
    "data_handling": "no-train",
    "data_handling_note": "ChatGPT Business, Enterprise, and Edu do not train on customer data by default and provide organizational retention controls; public ZDR documentation primarily concerns eligible API configurations, not a general ChatGPT guarantee. Uploaded/generated files may persist in ChatGPT Library depending on plan and rollout.",
    "capability": "frontier",
    "backend_dependent": false,
    "suitability": {
      "nonsensitive": "ok",
      "personal": "cfg",
      "special": "no"
    },
    "suitability_notes": {
      "personal": "Personal/pseudonymised (GDPR) data requires at minimum ChatGPT Team or Business tier with a signed DPA and training disabled by default. On Free/Plus/Pro the default trains on data and there is no DPA - not suitable. With Enterprise + signed DPA + EU data residency configured: usable for GDPR personal data.",
      "special": "Cloud-only. ZDR / HIPAA-BAA is a contractual assurance, but data still leaves your environment — not appropriate for identifiable or controlled-access (DUA) health/genetic data. Use a tool that runs on infrastructure you control, and confirm with your DPO / IRB."
    },
    "compliance": [
      "OpenAI business controls; verify exact ChatGPT plan, contract, residency, and Trust Portal scope"
    ],
    "pricing": "Use current official ChatGPT plan pricing; Enterprise/Edu are contractual. Unsupported price ranges and minimum-seat estimates are omitted.",
    "academic": "ChatGPT Edu is available through institutional agreements; no general individual academic discount is asserted.",
    "use_cases": [
      "Exploratory data analysis (EDA) on CSV/Excel/PDF uploads",
      "Automated Python code generation and execution in a sandboxed environment",
      "Statistical analysis and regression",
      "Data visualisation (bar, line, pie, scatter; interactive and downloadable charts)",
      "Light machine learning tasks",
      "Data cleaning and merging",
      "Conversational iteration on analysis results",
      "File import from Google Drive and Microsoft OneDrive"
    ],
    "runs_locally": false,
    "links": {
      "docs": "https://help.openai.com/en/articles/8437071-advanced-data-analysis-chatgpt",
      "pricing": "https://openai.com/chatgpt/pricing",
      "privacy": "https://openai.com/business-data/"
    },
    "notes": "Current product name is ChatGPT Data Analysis. It is cloud-only; organizational no-training and retention controls do not make it acceptable for special-category data under this index's stricter controlled-infrastructure rule.",
    "sources": [
      "https://help.openai.com/en/articles/8437071-advanced-data-analysis-chatgpt",
      "https://openai.com/business-data/",
      "https://help.openai.com/en/articles/9903489-eu-data-residency",
      "https://openai.com/chatgpt/pricing",
      "https://help.openai.com/en/articles/20001052-library"
    ],
    "status": "renamed",
    "current_name": "ChatGPT Data Analysis",
    "confidence": "high",
    "verified": "2026-07-13",
    "established": false,
    "tier_gate": "Business/Enterprise/Edu with DPA and accepted retention controls",
    "aliases": [
      "ChatGPT Advanced Data Analysis"
    ],
    "date_modified": "2026-07-13",
    "software_license": null,
    "license_status": "proprietary",
    "special_route": {
      "status": "not-appropriate",
      "boundary": "none",
      "inference": "none",
      "required_controls": [],
      "residual_risks": [
        "Cloud-only. ZDR / HIPAA-BAA is a contractual assurance, but data still leaves your environment — not appropriate for identifiable or controlled-access (DUA) health/genetic data. Use a tool that runs on infrastructure you control, and confirm with your DPO / IRB."
      ]
    }
  },
  {
    "id": "rca-ollama",
    "date_added": "2026-06-21",
    "name": "Ollama",
    "vendor": "Ollama (ollama.com)",
    "type": "cli",
    "openness": "open-source",
    "deployment": "local-capable / self-hostable / cloud",
    "model_backend": "Open-weight models run locally or on optional Ollama Cloud; model availability is dynamic",
    "data_handling": "local",
    "data_handling_note": "Local install (all tiers): prompts, responses, and model interactions never leave the user's machine - Ollama explicitly states it does not collect, store, transmit, or have access to locally processed content. No training on user data at any tier. Cloud models (Free/Pro/Max): content is processed transiently with technical measures to minimise retention and is never used for training; no persistent storage beyond request fulfilment. No SOC 2, ISO 27001, HIPAA BAA, or formal DPA is publicly documented - for regulated PHI/clinical data, the fully local/air-gapped path is the only validated route. Default Free tier with local-only use is safe; cloud tiers carry standard cloud-service caveats.",
    "capability": "strong",
    "backend_dependent": true,
    "suitability": {
      "nonsensitive": "ok",
      "personal": "ok",
      "special": "cfg"
    },
    "suitability_notes": {
      "personal": "Personal/pseudonymised data is safe when Ollama runs locally (default install): no data ever leaves the machine, no vendor processing, no training. Avoid routing personal data through Ollama Cloud tiers unless a DPA is in place (none currently published).",
      "special": "Special-category data (health, genetic, clinical) is suitable only when Ollama runs fully on-premises or air-gapped - the data never leaves the controlled environment and no third-party processor is involved. The cloud tiers (Free/Pro/Max) must not be used for special-category data: no HIPAA BAA, no formal DPA, and no SOC 2 are currently documented. Run locally to unlock this use case."
    },
    "compliance": [
      "Local mode avoids a vendor processor; no exhaustive public cloud certification claim is made"
    ],
    "pricing": "Free: $0 - unlimited local models, 1 concurrent cloud model, light cloud usage; Pro: $20/month or $200/year - 50x more cloud usage, 3 concurrent cloud models, private model sharing; Max: $100/month - 5x more than Pro, 10 concurrent cloud models, continuous agent tasks; Team: coming soon (SSO, MDM, centralised billing). Local execution is unlimited and free across all tiers.",
    "academic": "No dedicated academic or research discount is publicly listed. The core runtime (local) is MIT-licensed and free; researchers can self-host at zero cost with no usage caps.",
    "use_cases": [
      "local/air-gapped model infrastructure for coding agents",
      "private model serving for research workflows",
      "backend for Claude Code, Codex, Copilot CLI, OpenCode, Droid, and other compatible clients",
      "local model evaluation and agent pipelines"
    ],
    "runs_locally": true,
    "links": {
      "docs": "https://github.com/ollama/ollama",
      "pricing": "https://ollama.com/pricing",
      "privacy": "https://ollama.com/privacy"
    },
    "notes": "Local model infrastructure rather than a standalone coding agent. Stable v0.31.2 was current at verification; do not preserve a fixed model inventory or misspelled integration names across future updates.",
    "sources": [
      "https://ollama.com/privacy",
      "https://ollama.com/pricing",
      "https://github.com/ollama/ollama",
      "https://ollama.com/blog/launch",
      "https://github.com/ollama/ollama/releases"
    ],
    "status": "active",
    "current_name": "Ollama",
    "confidence": "high",
    "verified": "2026-07-13",
    "established": true,
    "tier_gate": "",
    "date_modified": "2026-07-13",
    "software_license": "MIT",
    "license_status": "confirmed",
    "special_route": {
      "status": "config-required",
      "boundary": "customer-controlled",
      "inference": "local-only",
      "required_controls": [
        "Special-category data (health, genetic, clinical) is suitable only when Ollama runs fully on-premises or air-gapped - the data never leaves the controlled environment and no third-party processor is involved. The cloud tiers (Free/Pro/Max) must not be used for special-category data: no HIPAA BAA, no formal DPA, and no SOC 2 are currently documented. Run locally to unlock this use case."
      ],
      "residual_risks": [
        "Conditional route: revalidate the exact deployment, model endpoint, integrations, telemetry, and institutional approval before use."
      ]
    }
  }
]
