Privatemode
Explore Privatemode models on TrustedRouter with current routes, token pricing, policy sources, privacy posture, regional availability, and API support.
Privatemodeprivatemode
These privacy labels describe Privatemode, the upstream model provider. ZDR is a retention policy; verified confidential inference additionally requires attested provider compute and end-to-end encryption.
| Provider | Privatemode |
|---|---|
| API operator country | DE Legal home of the API operator, not an inference-location guarantee. |
| Headquarters | Not verified |
| Routing status | Active |
| Provider website | https://www.privatemode.ai/ |
| Models | 3 public models |
| Credits routes | 3 |
| Zero data retention | not claimed |
| Verified confidential inference | Verified |
| Policy note | Requests and responses are encrypted between TrustedRouter's enclave and release-pinned Privatemode workloads after attestation verification. Verification failures reject the request; there is no plaintext fallback. Cache-routing metadata is visible to the provider edge. No separate ZDR commitment is inferred from encryption. Policy source |
Inference locations
Provider API declarations are also available on each model's endpoint API. Direct chat and Responses replies separate advertised availability from serving location in usage.inference_location; the actual serving region remains unknown when not reported.
Where the upstream GPUs execute the model, not the provider's headquarters, API ingress, or data storage. ZDR and confidential inference do not by themselves restrict geography.
- Declared countries or regions
- European Union (countries unspecified)
Privatemode declares EU hosting for its inference service. This does not establish an individual worker's country. - Can locations change?
- Changes within the EU and exact model placement are not specified by the reviewed declaration.
- Provider region pinning
- No per-request country-selection contract verified.
- Pinning through TrustedRouter
- Not supported by the current TrustedRouter integration.
- Infrastructure declaration
- EU-hosted inference, provider-declared; country and individual worker location unspecified.
- Evidence
- Public provider statement; encryption attestation is separate from location evidence. Reviewed .
Provider selection alone is not a region pin. TrustedRouter's US provider filter selects company jurisdiction, not GPU location. A regional gateway hostname does not pin a downstream GPU. For a binding residency requirement, confirm the model, region, failover scope and enforced controls before sending sensitive data.
Measured performance
24 samplesContinuously sampled across Privatemode's routed models: p50 TTFT, effective throughput, and success rate. Effective throughput uses provider-reported output tokens over complete request time. Unsupported route and probe-configuration rows are separated from provider downtime. No prompt or output content stored.
| p50 TTFT | 1315 ms |
|---|---|
| Effective throughput | 55 tok/s n=2 |
| Uptime | 100.00% |
| Model | p50 TTFT | Effective throughput | Uptime | Config excluded | Availability samples |
|---|---|---|---|---|---|
| openai/gpt-oss-120b | 1315 ms | — | 100.00% | — | 13 |
| z-ai/glm-5.3-flash | 909 ms | — | 100.00% | — | 4 |
| z-ai/glm-5.3 | 1356 ms | 55 tok/s n=2 | 100.00% | — | 7 |
Privatemode performance history · Full provider & model leaderboard.
Models served by Privatemode.
Each row links to pricing, provider, benchmark, and API pages for the model.
| Model | AI IQ | Context | Input | Cached input | Output |
|---|---|---|---|---|---|
openai/gpt-oss-120bOpenAI: gpt-oss-120b |
IQ 97#117 | 131,072 | $0.541972/1M | $0.050417/1M | $2.142677/1M |
z-ai/glm-5.3Z.ai: GLM 5.3 |
IQ 127#16 | 1,048,576 | $1.953618/1M | $0.189061/1M | $9.755481/1M |
z-ai/glm-5.3-flashZ.ai: GLM 5.3 Flash |
IQ 120#39 | 1,048,576 | $0.25208/1M | $0.063021/1M | $0.81926/1M |
Questions
Does Privatemode have zero data retention?
TrustedRouter does not currently mark Privatemode as provider-level zero data retention. Use trustedrouter/zdr or provider.min_privacy=zdr to select a different eligible route, and review the linked policy source for changes.
Is Privatemode end-to-end encrypted?
TrustedRouter records Privatemode as supporting provider-side confidential compute and end-to-end encrypted inference. The route-specific model page shows whether that protection applies to a particular endpoint.
Which Privatemode models are available through TrustedRouter?
This page currently lists 3 public Privatemode models, with live pricing, route count, context length, measured performance when available, and links to each model's provider and benchmark pages.