v1.0.3 Security Architecture & Data Boundary Overview
Sniper.AI Pro is designed with a defense-in-depth, local-first isolation model. Our engineering priority is simple: guarantee that your enterprise commercial lead intelligence never transits or persists on third-party cloud infrastructure.
1. Host Process Isolation
The software executes strictly within user-space on the host Windows machine. No elevated kernel-mode drivers or administrative domain rights are required to install or run.
2. Localhost IPC Loopback
The graphical cockpit and background intelligence workers communicate via loopback sockets bound strictly to 127.0.0.1:54321, blocking external network interfaces from probing desktop state.
3. Encrypted Local Storage
Opportunity dossiers, buyer telephone contacts, and targeting criteria are stored locally on your workstation in %LOCALAPPDATA%\SniperAI_Pro, protected by Windows OS file ACLs and BitLocker.
4. Licensing Cloud Separation
Our licensing servers handle commercial activation tokens, version tags, and heartbeat pings only. Customer operational lead data is not uploaded to Sniper.AI's licensing cloud. Core lead processing and operational records remain local to your Windows workstation.
5. Modern Transport Encryption
All external licensing queries take place over encrypted HTTPS/TLS transport with certificate validation, protecting against adversary inspection or man-in-the-middle attacks.
6. Release Binary Integrity
Production binaries are built via deterministic packaging pipelines and published on GitHub Releases with cryptographically verifiable SHA-256 digests.
v1.0.3 Release Binary SHA-256 Checksums
Get-FileHash <file> -Algorithm SHA256Threat Model & Operational Boundaries
Our security architecture is designed to address enterprise threat vectors common in revenue operations:
- Cloud Breach Exposure: Because prospective buyer details and customer inquiries never leave your workstation, an external infrastructure compromise can never expose your proprietary pipeline data.
- Multi-Tenant Data Leakage: Unlike cloud CRM SaaS that shares database instances across multiple competing vendors, your opportunity ledger is an isolated local file store on your physical workstation disk.
- Credential Safety: Browser session cookies and authentication states remain within your local Windows user profile directory. No external proxy retains your operator credentials.
Vulnerability Reporting Policy
Ramaaya Technologies welcomes security research and responsible vulnerability disclosure. If you identify a potential security boundary issue or binary vulnerability, please report it directly to our security engineering team: