BYOK & Privacy Guide · Updated August 24, 2026

Bring Your Own AI API Keys—with Clear Privacy Boundaries

tt is a bring-your-own-key (BYOK) AI client. You connect your own provider accounts, choose the services you use, and keep conversations and settings as app data on your device. Model requests still go to the providers you select.

BYOK means you control the provider accounts and credentials. It does not mean fully offline AI: a cloud model cannot answer until the necessary prompt and context are sent to its service.

What BYOK Means in tt

Your Provider Accounts

You obtain credentials from each AI provider or managed platform and remain responsible for that service's billing, quotas, regions, and acceptable-use terms.

Your Choice of Services

Configure one service for a single-model workflow or several for multi-model chat. The current in-app configuration list is the source of truth for available connections.

Local App Data

Conversations, provider configuration, and preferences are stored as app data on your device. tt does not provide a teramoby account or proprietary cloud-sync service.

Direct Provider Requests

AI requests go from your device to the configured service. teramoby is not a proxy in the model-provider request path.

How Data Moves Through a Chat

You Create a Message on Your Device

tt combines your message with the conversation context needed for the current workflow. Your provider choice determines which external service receives a request.

tt Authenticates with Your Credential

The relevant API key or service credential is retrieved from the device's secure system storage and used only to authenticate the request to its corresponding service.

The Provider Processes the Request

The selected provider receives the prompt and required context under its own privacy, retention, billing, and usage policies. The response returns directly to tt.

The Conversation Is Kept as Local App Data

tt saves the conversation on the device. Your operating system may include eligible local app data in system backup or device migration according to your platform settings.

What Leaves Your Device

Single-model and standard multi-model chats

A single-model chat sends the necessary message and context to the service you use. In a standard multi-model chat, every service with a complete model and credential configuration can receive the prompt. The synthesizing service may also receive completed model replies so it can organize them into one answer.

Team Mode discussions

Team Mode gives participating models shared discussion context. A later request to one provider can therefore include messages or model responses produced earlier in the discussion by another provider.

Optional online search

When online search is enabled, a short search query derived from your prompt may be sent to the teramoby-operated search service and its upstream search source. Returned results may then be included in context sent to your configured AI provider. You can disable online search in settings. See the full Privacy Policy for current platform-specific behavior and service details.

The API Key Security Boundary

Configured AI provider API keys are stored in the device's secure system storage. An AI provider key is sent only when needed to authenticate with that corresponding provider; tt does not send it to teramoby or unrelated services.

A separately configured Search API Key is also stored in secure local storage, but it must be sent to the teramoby-operated search endpoint when authenticating an online-search request. The full Privacy Policy documents this separate search data flow.

This boundary does not replace account security. The provider necessarily receives its own credential, and a compromised device or provider account can still put access at risk. If a device is lost or a key may have been exposed, revoke or rotate that credential in the provider's console.

Practical BYOK Safety Checklist

When tt Is—and Is Not—the Right Fit

A Good Fit

You already use provider APIs, want one native client for several services, and prefer local conversation storage while retaining direct control of provider accounts.

Choose Additional Controls When Needed

If data must never leave a device, you need fully offline inference, or your organization requires centrally managed keys, DLP, auditing, or provider agreements, verify those requirements before using a cloud-model workflow.

Choose the Services You Trust

BYOK gives you control over the accounts tt connects to; it does not override a provider's policies. Review the supported providers and hosting platforms, connect only the services appropriate for your data, and read the full Privacy Policy before using sensitive information.

Download tt See Supported Services