At IRISX-AI, security and privacy are fundamental principles of our design architecture.
- Local Encryption: All user API credentials (including Gemini API Keys) are encrypted locally using native mobile hardware keystore APIs.
- Zero Third-Party Relays: Your credentials and voice streams are routed directly from your mobile device to Gemini Live API endpoints. No intermediary servers store or inspect user voice data.
If you discover a security vulnerability within IRIS-MX or the public UI shell, please report it responsibly:
- Do NOT open a public issue on GitHub.
- Email the vulnerability details directly to
irisaidevop@gmail.com. - Include clear steps to reproduce the issue, proof of concept, and affected versions.
We appreciate your effort in responsibly disclosing findings to keep our users safe.
For enterprise licensing, security audits, or private source code requests, please reach out to irisaidevop@gmail.com or visit https://www.irisxai.in.