Transparency
jvim is closed source but ships with full transparency reports for every release.
What we publish per release
Section titled “What we publish per release”- SBOM (Software Bill of Materials) — every dependency, version, and license
- Trivy security scan — known CVE check against the binary
- OSV scan — Open Source Vulnerabilities database check
- Third-party notices — full attribution of OSS dependencies
Data handling
Section titled “Data handling”- Local-first. Your vault stays on your machine. We don’t see your notes.
- AI provider, when used, is your choice. Configure an OpenAI-compatible cloud or local endpoint.
- Telemetry: opt-in. Off by default. See release policy for details.
Source access
Section titled “Source access”The binary is free to use, share, and run commercially. The source code is private. See license for the full terms.