SELF-HOSTED PII VAULT
Every PII vault asks you to send them your personal data. Obsydia never receives it.
Core0 runs inside your infrastructure. There is no telemetry, no remote licence check and no vendor endpoint in the request path. We could not hand your data to a regulator, an attacker or a court even if we wanted to — we never hold it.
Encryption at rest solves the wrong problem
Disk encryption protects you from someone stealing the server. Nobody steals the server. Data leaves through SQL injection, an over-permissive API, a leaked backup, a support tool with too much reach — and in every one of those cases the database was mounted, decrypted and answering queries.
Tokenisation changes what the attacker gets. Your application database holds references. The personal data lives somewhere else, behind its own keys, its own access control and its own audit trail.
What we build
Core0
A self-hosted vault for personal data and documents. Field-level encryption, GDPR erasure and export as API calls, a complete audit trail, and a key layer that nothing else in the system can read from. How it works.
Priced as a licence, not a meter
Vaults that bill per operation charge you every time you protect a customer. Core0 is licensed annually, from £1,490 a year. Volume changes nothing. See the editions.
Verify before you trust
Everything above is checkable. Point a packet capture at a running node and watch it stay silent. Read the architecture, the threat model and the API surface before you talk to us — that order suits us fine.
Read the architecture