Trusted Cowork
A desktop agent built on OpenCode, with confidential TrustedRouter models. Work with local files, approve tools, and keep your sessions on your Mac.
Signed and notarized for Apple silicon and Intel Macs running macOS 13 or newer. A desktop app with browser sign-in. Uses TrustedRouter's OpenAI compatible API.
Source code and setup guide. Install this app directly rather than using the older app's updater. Sign in again on first launch; older app data is not imported. Updates are manual.
Confidential inference by default
trustedrouter/confidential is the default route. Every TrustedRouter request carries data collection denied and a minimum privacy tier of confidential, including when you select a specific model.
Choose an eligible confidential model by name or use the default route. Local tools run with your user permissions; this app is not a filesystem sandbox. Verify TrustedRouter attestation before sending sensitive work.
Give teams an agent without creating an unreviewed data path
Analysis inside policy
Work across models, code, reports, and internal tools while requiring an approved confidential route.
Research without casual disclosure
Keep experimental notes, scripts, and document workflows behind one enforceable inference boundary.
Privilege-aware workflows
Reduce accidental provider drift when people summarize matters, review documents, and automate repetitive work.
Work in your repository
Read files, review changes, and run local tools with confidential TrustedRouter inference.
Self-serve in minutes. Enterprise controls when you need them.
- 1Download
Drag Trusted Cowork into Applications, then open the app.
- 2Sign in
Select Sign in with TrustedRouter and authorize in your browser. API key entry is also available.
- 3Start working
Check that trustedrouter/confidential is selected, then give the agent a task.
Keep approved models and token capacity inside your enterprise boundary
Move from self-serve to organization identity, policy, private model access, internal token capacity, and deployment support without retraining employees on a different agent.
Questions
Can Confidential Cowork fall back to a normal model provider?
TrustedRouter requests deny data collection and require confidential providers. If no eligible provider is available, they fail closed. This app does not allow other inference backends.
Is this the earlier QuillCode desktop app?
No. Trusted Cowork is an OpenCode-based desktop app with browser sign-in. Install the signed app directly and select Sign in with TrustedRouter. Updates are manual; earlier app credentials and sessions are not imported.
Can an enterprise use its own models and token capacity?
Yes. The self-serve app starts on TrustedRouter. Enterprise deployments can be designed around approved private capacity, internal model access, identity controls, and organization policy.