OWASP put memory poisoning in its 2026 agentic-ai top 10. its recommended fixes: track provenance, expire unverified memory. that's exactly what hsm verify checks.
OWASP →
verifiable memory for your ai.
homestead-memory is verifiable, local-first memory for your ai agents: plain markdown you own, runs on your machine, and it proves it hasn't rotted, been tampered with, or poisoned. mechanical checks, not vibes.
$ pip install homestead-memory
$ hsm verify --demo
① a clean vault
✅ MEMORY INTACT 100/100
② plant a contradiction · a dead link · an uncited "fact"
🔴 ROT DETECTED 0/100
[self_contradiction] status: hot vs done
[uncited_claim] favorite_drink → no source
[dangling_citation] source: deleted-note.md
exit 1 · gate it in ci like a test not a developer? we'll set a whole private ai up on your machine · $199 →
own it. verify it. leave with it.
every "ai memory" tool stores locally now. none of them prove what they stored is still true. that's the part we built.
hsm verify scores rot, tamper and poisoning 0 to 100 and exits nonzero. gate it in ci and cron like a test.
and the model runs local too. talk to a real private ai right here, in this tab, on your device, for $0. nothing leaves the building.
runs a real open model on your device · downloads once (~0.7gb), then it's yours offline · no key, no cloud
you just ran ai free and private, on hardware you already own, while uber burned its whole 2026 ai budget in four months renting tokens. this is a tiny 1b model, sized to run inside a browser tab. the real thing is a different league: we install the best current open model for your machine (qwen, llama, gemma, deepseek, mistral, not locked to anyone), running natively. a 30b-class model runs snappy on a mac mini now. get the real thing →
yes, the model runs in this tab, on your device, for $0. want it installed as a real app? we set it up →
the tide turned.
wanting to own your ai used to sound paranoid. in 2026 it's the pope, whole states, the security world, and the courts saying it out loud.
“artificial intelligence needs to be disarmed.”
New York became the first US state to freeze new large data centers. around 100 towns already had their own moratoriums. the pushback went statewide.
CNBC →a federal court ordered OpenAI to preserve every user chat, including the ones you deleted. the cloud keeps what you can't erase. yours should live on your disk.
OpenAI →you're not the crazy one for wanting to own your ai. you're early.
memory your auditors will accept.
the open engine runs on one machine. homestead-cloud runs it for a team: a git-backed vault with sso, rbac, data residency and a full audit trail, where every write is signed and every push is gated by hsm verify so unverifiable memory never lands.
built for the teams that can't ship agent memory they can't prove: legal, health, finance, gov.
no self-serve yet. we hand-onboard a first cohort of regulated teams, so tell us about yours.
or, we'll set up a whole private ai on your machine.
not a developer? we remote in and install a private ai on the computer you already own, pick the right model for it, and lock down privacy. one and done, $199, $0 a month after. you own it.
the one-click HOMESTEAD app is still in development. see the honest product status →
stop renting
your mind.
own your ai memory, verify it, and keep it as plain markdown you can walk away with. and if you'd rather we set the whole private ai up for you, we do that too.
homestead-memory · local ai setup · for teams · guides · about