Real Obvious TSF Overview
Collect – Compose – Certify
Using a Continuous Integration / Continuous Delivery (CI/CD) pipeline, Real Obvious Trusted Software Factory (TSF) acquires then transitions software and data (Datasets) from untrusted to trusted (Certified Datasets) which is used by Real Obvious Trusted Private AI.
Collect – Real Obvious TSF acquires software and data files (Datasets) from known / trustworthy proven sources. The Datasets are checked to determine their integrity and level of trust.
Compose – Real Obvious TSF verifies and validates Datasets transitioning them from untrusted to trusted.
Certify – Real Obvious TSF performs additional checks on the Dataset before issuing a digitally signed Trust Certificate for the Dataset (now a Certified Dataset).
Real Obvious Trusted Software Factory (TSF) is a collection of services, processes, procedures, and policies which automate the Continuous Integration and Continuous Delivery (CI/CD) of trusted software applications and data (aka Certified Datasets). As part of the Real Obvious Collection of Trusted Solutions, TSF collects, composes, and certifies every aspect of software applications and data to guarantee their trustworthiness.
Real Obvious TSF transitions untrusted open-source software into trusted software, leveraging recognized industry standards and DevSecOps best practices. Real Obvious TSF’s Trust Enforcement detects / quarantines application and data files which do not meet your required level of trust (e.g., scans, AV, CVE, checksums, signatures, manifests, etc…). TSF is designed for critical environments, such as isolated enclaves and private AI services, where security and integrity are paramount. TSF helps organizations safeguard digital assets, address HIPAA / PII compliance requirements, and protect intellectual property.
Real Obvious AI Integration
TSF is an integral part of Real Obvious Trusted Private AI services. Real Obvious Trusted Private AI provides secure, enterprise-class Trusted Private AI services that protect data and intellectual property, complying with numerous industry regulations, while offering simple, cost-effective deployment options across on premise and cloud-based environments.
Product Highlights
Here are some examples of Trusted Private AI services possible using Real Obvious Trusted Private AI.
Chat
Interactive AI ChatPrivate AI Chat
Deploy trusted private AI interactive chat services using Real Obvious Trusted Private AI.
Images
Photos and ImagesPrivate Image Services
Generate photographs and images using Real Obvious Trusted Private AI.
Videos
Videos and AnimationAI Video Services
Generate videos and animated images using Real Obvious Trusted Private AI.
Audio
Sounds, Music, SongsAI Audio Services
Generate audio clips, sounds, music, and songs using Real Obvious Trusted Private AI.
Agentic
Agentic AI ServicesPrivate Agentic AI
Deploy trusted private Agentic AI services using Real Obvious Trusted Private AI.
Testimonials
We are an early adopter of Real Obvious Collection of Trusted Solutions. Having a Private AI system was strategically important to our creative team. Having a Trusted AI system eliminates the worry of where did the software and LLMs come from? What’s running on our AI systems? Who can access our data?
Real Obvious TSF Pipeline and Environments
The Real Obvious Trusted Software Factory (TSF) operates a Continuous Integration / Continuous Delivery (CI/CD) pipeline on software and data files (aka Datasets). TSF transitions these Datasets from “untrusted” to “trusted” (aka Certified Datasets). As each Dataset progresses from one environment to the next (Development – Test – Release – Production) they are stored in isolated Real Obvious Trusted Repository Services (TRS) instances. As Certified Datasets (Updates) are produced they are made available to licensed Real Obvious TRS instances (via the Internet) and are ultimately deployed to Real Obvious Trusted Private AI instances for installation or update.
Most organizations leverage Real Obvious managed TSF services. Real Obvious TSF self-managed instances may be licensed by organizations that require 100% ownership and control.
Cybersecurity
Cybersecurity is more crucial than ever for the success and integrity of Trusted Private AI services. Real Obvious Trusted Private AI incorporates a robust suite of security features to safeguard against various threats and ensure the confidentiality, integrity, and availability of your data.
Trust Certificates
Real Obvious Trust Certificates ensure the trustworthiness of software and data files (aka datasets) used by Real Obvious Trusted Private AI services. Trust Certificates prove the integrity / authenticity of a dataset while protecting against the introduction of malicious or unverified content. Trust Certificates are issued by the Real Obvious Trusted Software Factory (TSF).
Trust Enforcement
Real Obvious Trust Enforcement provides an additional layer of security to ensure that only trustworthy files are stored or executed on your system. By evaluating scan results, hash values, digital signatures, and other relevant metrics, we can confidently determine whether a dataset (software and data files) is trustworthy or not. If a dataset fails to meet the required level of trust, configured by your organization, it will not be allowed to run or be processed, thereby preventing potential security breaches and data compromise.
Learn More
“Trust is Everything”
Artificial Intelligence (AI) has become an integral part of our lives, transforming the way we live, work, and interact with each other. However, as AI-driven systems continue to grow in complexity and influence, a pressing concern has emerged: trust.
In this white paper, we will explore the importance of trust in AI solutions and discuss the limitations of public and private AI approaches.
Related Products
Explore more Real Obvious Collection of Trusted Solutions products.
Resources
Frequently Asked Questions
Real Obvious Trusted Software Factory (TSF) provides automated Continuous Integration / Continuous Delivery (CI/CD) of trusted applications and data.
Real Obvious TSF is a collection of services, processes, procedures, and policies which automate the CI/CD of trusted software applications and data. As part of the Real Obvious Collection of Trusted Solutions, TSF collects, composes, and certifies every aspect of software applications and data to guarantee their trustworthiness.
Real Obvious TSF transitions untrusted open-source software into trusted software, leveraging recognized industry standards and DevSecOps best practices. Real Obvious TSF’s Trust Enforcement detects / quarantines application and data files which do not meet your required level of trust (e.g., scans, AV, CVE, checksums, signatures, manifests, etc…). TSF is designed for critical environments, such as isolated enclaves and private AI services, where security and integrity are paramount. TSF helps organizations safeguard digital assets, address HIPAA / PII compliance requirements, and protect intellectual property.
Absolutely. All Real Obvious solutions support self-hosted (your infrastructure) and cloud (Real Obvious hosted) deployments.
Absolutely. All products in the Real Obvious Collection of Trust Solutions were purpose built to ensure trusted operation in an offline environment.
Acquire
Online Environments – The Real Obvious Trusted Software Factory (TSF) acquires software and data (aka datasets), tests / verifies / validates the datasets, transitions datasets from untrusted to trusted, and then publishes the trusted / certified datasets to a Real Obvious managed Trusted Repository Service (TRS) system. Access to the Real Obvious managed TRS service is available to all Real Obvious licensed customers (Internet access required).
Offline Environments – Customers with an Enteprise+ license have the option to run their own private TSF / TRS instances (Internet connection optional).
Transport / Store
Online Environments – The Real Obvious Trusted Repository Services (TRS) facilitates the transfer and storage of trusted datasets between TRS systems. Typically, customers run a self-managed TRS instance which connects to the Real Obvious managed TRS (Internet access required)
Offline Environments – Real Obvious licensed customers run one or more private TRS instances (Internet connection optional)
Operate
Real Obvious Trusted Private AI (AI) services can operate in either an online or offline environment.
Generally, Real Obvious supports all AI software and data which allows for downloading / offline operation. Contact us for details.
Yes. If your IT team has AI expertise then they can deploy AI without using Real Obvious. But will it be trusted and private?
Trusted Checklist
- Where was the software / data acquired from and is the source trust worthy? [provided by Real Obvious TSF]
- Was the software / data acquired perfectly, integrity checked, completeness verified? [provided by Real Obvious TSF]
- Was the software / data scanned, filtered, verified, validated, tested, packaged, and certified? [provided by Real Obvious TSF / Trust Certificates]
- Is malicious / untrusted software / data quarantined? [provided by Real Obvious TSF / Trust Enforcement]
- Can the service be operated safely ensuring malicious / untrusted software / data is quarantined? [provided by Real Obvious Trust Enforcement]
Private Checklist
- Can the service be deployed without Internet connectivity? [provided by Real Obvious TRS / AI]
- Can the service be operated without Internet connectivity? [provided by Real Obvious AI]
- Can the service be maintained / updated without Internet connectivity? [provided by Real Obvious TSF / TRS / AI]
Self Managed Real Obvious Trusted Solutions (AI, TRS, TSF) are licensed on a yearly basis. There are three licensing plans available.
- Business – Operate Trusted Private AI services (chat, image, audio, video, agentic AI, …) on your own systems in the cloud or on-premise.
- Enterprise – Operate highly available / redundant Trusted Private AI services on your own cluster of systems in the cloud or on-premise.
- Enterprise+ – Operate multiple highly available / redundant Trusted Private AI services on your own clusters of systems in a hybrid multi-cloud environment.
Yes. A Real Obvious Enterprise+ license is required to deploy and operate a self managed Real Obvious Trusted Software Factory instance (on-premise, cloud, hybrid cloud, or hybrid multi-cloud configurations).
Once a license has expired, all systems assigned to that license are unable to access Real Obvious Certified Dataset Updates, and are unable to download software updates.
Note: Deployed systems running Real Obvious Trusted Solution licensed software will continue to operate with a lapsed license.
Yes. Business and Enterprise licenses can be acquired at any time to replace a lapsed license.
Contact Real Obvious to renew a lapsed Enterprise+ license.
To deploy Trusted Private AI services to an isolated enclave the following primary functions need to be addressed:
- Acquire – Continuously download software and data files (aka datasets) from vendors, repositories. Transition the datasets from “untrusted” to “trusted” by scanning, filtering, validating, and testing. Certify and package the dataset. [Real Obvious Trusted Software Factory]
- Store – Securely store certified datasets into a trusted repository. [Real Obvious Trusted Repository Services]
- Transfer – Securely transfer certified datasets ensuring integrity and trust. [Real Obvious Trusted Repository Services]
- Install – Install Trusted Private AI services from certified datasets. [Real Obvious Trusted Private AI]
- Operate – Run Trusted Private AI services. [Real Obvious Trusted Private AI]
- Update – Upgrade and patch Trusted Private AI services. [Real Obvious Trusted Private AI]
Real Obvious Trust Enforcement actively prevents (blocks / quarantines) untrusted software and data from being stored, transferred, installed, or used in operations.
Real Obvious Trust Enforcement can…
- Recognize Datasets
- Determine if a Dataset is…
- Certified (100% integrity / trusted)
- Unsigned (100% integrity / untrusted)
- Invalid (<100% integrity / untrusted)
- Block / quarantine Datasets which are Unsigned / Invalid
- Block / quarantine Datasets which are Certified but which do not meet organizational defined requirements
Real Obvious Trust Enforcement is integrated into the Real Obvious Collection of Trusted Solutions including:
- Real Obvious Trusted Software Factory (TSF)
- Real Obvious Trusted Repository Services (TRS)
- Real Obvious Trusted Private AI (AI)
Note: Real Obvious Trust Enforcement is different than traditional Anti-Virus (AV) protection. While Real Obvious Trust Enforcement leverages AV scan results it does not require running a AV like service (which typically degrades system performance).
A Dataset is either a folder or a file…
- Dataset Folder – The collection of all files and sub-folders within the folder
- Dataset File – An individual file (typically a tar or zip)
A Certified Dataset includes…
- Dataset Folder / File
- Real Obvious Trust Certificate
Real Obvious Trust Certificates are…
- Created by Real Obvious Trusted Software Factory (TSF)
- Stored with the Dataset Folder / File
- A folder (.ro) or file (.ro_trust)
- A fingerprint of the Dataset (manifest, hashes, scan results / score, certificate hash, and more)
- Digitally signed by a Real Obvious Trusted Certificate Authority
Real Obvious Trust Enforcement can…
- Recognize Datasets
- Determine if a Dataset is…
- Certified (100% integrity / trusted)
- Unsigned (100% integrity / untrusted)
- Invalid (<100% integrity / untrusted)
- Block / quarantine Datasets which are Unsigned / Invalid
- Block / quarantine Datasets which are Certified but which do not meet organizational defined requirements
A Real Obvious Trust Certificate is used to verify the integrity and authenticity of a Dataset (a folder of files or just one file).
Real Obvious Trust Certificates are…
- Created by Real Obvious Trusted Software Factory (TSF)
- Stored with the Dataset Folder / File
- A folder (.ro) or file (.ro_trust)
- A fingerprint of the Dataset (manifest, hashes, scan results / score, certificate hash, and more)
- Digitally signed by a Real Obvious Trusted Certificate Authority
Real Obvious Trust Certificates are used by…
- Certified Datasets
- Real Obvious Trust Enforcement
Real Obvious Trust Certificates are integrated into the Real Obvious Collection of Trusted Solutions including:







