당신의 노트와 코드 · 믿을 수 있는 AI
Altretta

AI 답변을 진짜 믿을 수 있게.

Altretta는 당신의 비공개 두 번째 뇌입니다. 당신의 노트와 코드를 하나의 서명된 그래프에 담습니다. 무엇이든 물어보면 모든 답변이 그것이 나온 정확한 출처——결정, 노트 또는 함수——를 인용하며, 어떤 것도 당신의 컴퓨터를 벗어나지 않습니다.

무료로 시작·macOS · Windows · Linux·요금제 시작가 €4.99
ijeon-gyehoek.md

마이그레이션은 언제 승인되었나요?

마이그레이션은 3월 12일에 승인되었으며, 예산은 €48.000.

hoeuirok-2026-03-12.mdyesan-q1.md
검증됨서명 8f3a…c1

모든 답변, 증거와 함께

한마디로

Altretta는 프라이빗하고 로컬 우선인 노트 앱입니다. 당신의 노트와 코드는 당신 소유의 Markdown 파일이며, AI의 모든 답변은 그것이 나온 정확한 출처를 서명된 기록과 함께 인용합니다.

당신의 파일
당신의 기기에 Markdown, 사일로 없음
당신만의 AI
MCP로 당신의 모델 연결
모든 것이 증거를 남깁니다
서명되고 되돌릴 수 있는 기록
지원 환경
macOS · Windows · Linux · 무료
문제

지식은 더 나은 것을 받을 자격이 있습니다.

노트가 남의 앱에 갇혀 있습니다

독점 데이터베이스, 폐쇄된 형식, 언젠가 사라질 동기화. 당신의 지식은 영원히 당신의 것이어야 합니다.

AI는 근거 없이 답합니다

어시스턴트는 지어내고, 출처를 뒤섞으며, 각 주장이 어디서 나왔는지 확인할 수 없습니다. 증거 없이는 신뢰가 없습니다.

팀 지식이 고립됩니다

파편화된 위키, 취소할 수 없는 권한, 외부에 노출된 민감한 데이터. 공유가 통제 포기를 의미해서는 안 됩니다.

검증

믿지 마세요. 확인하세요.

신뢰는 내어주는 것이고, 검증은 직접 하는 것입니다. Altretta는 중요한 일에서 우리 말도, AI의 말도 그냥 믿을 필요가 없도록 만들어졌습니다.

자격을 갖췄을 때만 붙는 체크 표시

배지는 두 가지가 동시에 성립할 때만 나타납니다. 서명이 실제로 검증을 통과하고, 노트가 그 서명이 담고 있는 내용과 여전히 일치할 때입니다. 둘 중 하나라도 검증에 실패하면 배지는 없습니다. 스스로에게 유리하게 넘겨짚지 않고, 안 되는 쪽으로 닫힙니다.

무언가 바뀌면 그렇다고 말합니다

서명한 뒤에 노트를 수정했다면, 정확히 그렇게 알려줍니다. 슬그머니 '서명 없음'으로 낮추지 않습니다. 지금 읽고 있는 내용을 더는 담지 못하는 서명이라면, 소리 내어 말할 가치가 있습니다.

모른다고 말할 줄 아는 어시스턴트

노트에 없는 내용을 물으면 그렇다고 알려줍니다. 답변은 아예 만들어지지 않습니다. 그래도 답을 받고 싶다면, 직접 의도해서 선택해야 하는 별도의 동작입니다.

답변은 파일이 아니라 페이지를 가리킵니다

PDF, Word 파일, 프레젠테이션, 스프레드시트는 구조를 그대로 유지한 채 읽힙니다. 페이지 번호, 슬라이드 번호, 심지어 규정의 조항 번호까지 남기 때문에 근거 있는 답변은 파일 이름만이 아니라 정확한 출처 위치를 인용할 수 있습니다.

이런 것들을 얻을 수 있어요

노트는 언제나 내 것

모든 노트는 내 컴퓨터의 일반 파일입니다. 종속도, 열 수 없는 형식도 없습니다. 이동하고, 백업하고, 언제든 Altretta를 떠나도 내 지식은 나와 함께합니다.

altretta — notesq3-planningbudget-q3team-notesroadmapq3-planning.md€48,000Yours · Markdown · Verified

놓쳤던 연결을 자동으로 발견

Altretta가 관련 노트를 자동으로 연결하고, 몇 달 전에 썼다가 잊어버린 아이디어를 다시 꺼내줍니다 — 전부 내 기기에서, 업로드 없이.

altretta — graphAnaQ3€48kq3-planning.mdbudget-q3.mdteam-notes.mdq3-planning.mdLinkedAnaQ3€48,000証 Verified
신규 · Estratos 3D

당신이 아는 모든 것의 형태를 보다

클릭 한 번이면 당신의 노트가 걸어 다닐 수 있는 세계가 됩니다. 폴더는 층이 되고, 숨은 연결이 수면 위로 떠오르며, 당신의 사고의 형태가 마침내 드러납니다.

클릭 한 번으로 3D폴더가 층이 된다숨은 연결이 드러난다
altretta — 3D graph/ projects/ notes/ people2D ↔ 3D · floors by folder
지식과 코드

프로젝트 전체를 이해하세요——당신이 쓰는 것도, 코딩하는 것도.

Altretta는 당신의 저장소를 읽어 서명된 지도로 그려냅니다. 모든 심볼, 서로를 어떻게 호출하는지, 그리고 각각을 지배하는 결정까지. 그래서 당신의 AI는 노트만 아는 것이 아니라——코드와, 아무것도 깨뜨리지 않고 바꾸는 방법까지 이해합니다.

코드를 지도화무언가 바꾸면 무엇이 깨지는지문서가 뒤처지면 알림프로젝트에 물어보기
altretta — codeHeader.tsxapi.tsPage.tsxfnrender{ … }governed byadr-render.mdsymbol · callers · decision
내 AI를 직접 연결

당신의 AI를, 당신의 방식으로.

이미 사용 중인 AI — ChatGPT, Claude, Cursor — 를 자신의 구독으로 노트에 연결하세요. 무엇을 보여줄지는 내가 결정하고, 모든 동작은 서명되어 되돌릴 수 있습니다.

원클릭 설정무엇을 보여줄지 직접 결정서명되고 되돌릴 수 있음근거 있게, 추측 없이이미 구독 중인 AI를 그대로 사용
altretta — askQWhat was the Q3 budget?AThe Q3 budget was€48,000.q3-planning.md · line 12Grounded in your notes — no guessing.
차별화 요소

암호화되고, 검증 가능하며, 취소 가능한 팀 브레인.

통제를 포기하지 않고 지식을 공유하세요. 종단간 암호화, 즉시 취소 가능한 액세스, 증명 가능한 기록.

종단간 암호화제거하는 즉시 접근 종료누가 무엇을 바꿨는지 항상 파악믿을 수 있는 되돌리기
altretta — team brain証 e2eANJDRVrevokedEnd-to-end encrypted · revocable

설계부터 토큰 절약

Altretta는 MCP로 AI에 연결되고, AIngle(그 시맨틱 엔진) 덕분에 출처와 함께 필요한 노트만 모델에 전달합니다. AI는 보관함 전체가 아니라 관련 맥락으로 작동해 토큰을 덜 쓰고, 매번 다시 붙여넣을 필요도 없습니다.

-94%약속이 아닌 실측
질의Altretta 없이Altretta 사용절감률
질의당 평균23,0201,36394.1%
8개 질의 대화184,60946,70974.7%

Studio Ghibli 표준 데모 보관함(43개 노트)에서 실측: 보관함 전체를 컨텍스트로 붙여넣은 경우 vs Altretta가 실제 엔진으로 MCP를 통해 제공하는 인용 구절. 입력 토큰 기준. 비율은 토크나이저 간에 안정적. 공개된 프로토콜로 재현 가능.

이 절감은 MCP로 AI를 Altretta의 skill에 연결하는 데서 나옵니다. 보관함 전체가 아니라 중요한 인용 구절만 받습니다. Studio Ghibli 데모 보관함으로 직접 재현할 수 있습니다.

Altretta의 skill 받기

Apilium Hub의 스킬과 플러그인으로 확장하세요.

hub.apilium.com

Hub 방문
작동 방식

노트에서 검증 가능한 지식으로.

01

Markdown으로 작성

평소처럼 노트를 작성하세요. 모든 아이디어가 디스크에 있는 당신 소유의 파일로 저장됩니다.

02

Altretta가 모든 것을 연결

관련 노트를 연결하고 모든 변경에 서명된 기록을 유지합니다 — 전부 내 컴퓨터에서.

03

클릭 한 번으로 AI 연결

이미 사용 중인 AI를 연결하세요. AI가 노트를 읽고, 무엇을 볼 수 있는지는 내가 선택합니다.

04

질문하고 검증하세요

노트를 인용한 답변과 직접 확인할 수 있는 신뢰도 점수를 받으세요.

처음 10분

열면 실제로 벌어지는 일.

계정도, 설치 마법사도, 업로드도 없습니다. 폴더 하나만 지정하면 바로 작동합니다.

  1. 01

    폴더 하나만 지정하세요

    지금 쓰던 노트 폴더가 있는 그대로 작동합니다. 가져오기도, 변환도, 이동도 없습니다. Altretta는 디스크에 이미 있는 Markdown 파일을 읽습니다.

  2. 02

    이미 결제 중인 AI를 연결하세요

    이미 설치되어 있는 Claude, Cursor, VS Code, Windsurf, Zed 등을 찾아 대신 설정해 줍니다. 붙여 넣을 키도, 손볼 설정 파일도 없습니다.

  3. 03

    내 노트만 아는 걸 물어보세요

    첫 근거 있는 답변에서 감이 옵니다. 답변이 출처가 된 노트를 인용하고, 그 노트를 열어 직접 확인할 수 있습니다.

  4. 04

    이번엔 허점을 찔러 보세요

    한 번도 적어 둔 적 없는 걸 물어보세요. 근거가 없다고 말할 겁니다. 어떤 답변보다도, 그게 계속 쓸 이유입니다.

잃을 것 없음

확인해 보는 데 드는 비용은 없습니다.

앱은 무료이고, 내 컴퓨터에서 돌아가고, 파일은 원래 있던 자리에 그대로 있습니다. 체험 기간 카운트다운도 없고, 해지할 것도 없습니다.

계정이 필요 없습니다

내려받고, 열고, 작업하세요. 로그인은 유료 기능에만 필요하고, 로컬 기능은 로그아웃 상태에서도 계속 작동합니다.

네트워크를 꺼도 작동합니다

노트도 앱도 내 디스크에 있습니다. 비행기 안이든, 연결이 끊겼든, 회사가 사라졌든, 읽고 쓰는 일은 멈추지 않습니다.

우리보다 오래 남을 형식의 파일

평범한 폴더에 담긴 순수한 Markdown입니다. 데이터베이스도, 컨테이너도 아닙니다. 오늘이든 10년 뒤든, 우리가 있든 없든, 어떤 편집기로도 열립니다.

당신에 대해 아무것도 측정하지 않습니다

분석도, 사용 기록 전송도, 크래시 텔레메트리도 없습니다. 갓 설치한 앱은 어떤 기기에서 실행 중인지조차 알아내지 않습니다.

요금제

무료로 시작하세요. 성장할 때만 결제하세요.

내 컴퓨터의 앱은 영원히 무료이고, 폴더 1개 동기화도 무료입니다. 유료 플랜은 무제한 동기화 폴더, 검증 가능한 페이지 게시, 암호화 팀 브레인을 추가합니다.

결제하는 이유

결제하면 달라지는 것.

한 사람이 한 대에서 쓴다면 무료 앱이 곧 제품 전부입니다. 결제는 범위의 문제입니다. 더 많은 기기, 더 긴 기록, 그리고 함께하는 사람들.

모든 기기에서 같은 보관함

노트북에서 쓰고 데스크톱에서 이어가세요. 이미 당신이 가지고 있고 직접 고른 저장소를 거쳐서요. 당신의 Dropbox, 당신의 OneDrive, 네트워크 공유 폴더, USB 메모리. 거기에 올라가는 것은 암호화되어 있고, 파일 이름은 뒤섞이고 폴더 구조도 남지 않습니다. 우리 서버에는 사본이 없습니다. 우리 서버는 애초에 그 경로에 없기 때문입니다.

고른 노트를 누구나 열 수 있는 페이지로

보관함에서 고른 노트를 사이트로 공개하고, 각 페이지에 그 출처 이력을 함께 붙일 수 있습니다.

더 멀리 거슬러 올라가기

무료에서는 최근 일주일을 손쉽게 꺼내 볼 수 있습니다. 결제하면 그보다 오래된 버전까지 열려서, 마음을 바꾸기 전의 문장으로 되돌아갈 수 있습니다.

함께 쓰지만 여전히 내 것인 두뇌

암호화된 보관함을 팀과 공유하고, 접근 권한을 한 사람씩 주고 회수하며, 누가 무엇을 바꿨는지 늘 알 수 있습니다.

로컬
Free
€0영원히 무료
누구에게나
  • 전체 데스크톱 앱
  • 노트, 그래프, Bases & Canvas
  • 이미 구독 중인 AI 연결
  • 내 노트에 기반한 근거 있는 답변
  • 내 클라우드로 폴더 1개 동기화
다운로드
인기
개인
Pro
€4.08/월€4.99
연간 청구 · €49/년
원하는 만큼 폴더 동기화
  • 무제한 동기화 폴더
  • 다른 사람이 검증할 수 있는 페이지 게시
  • 더 긴 버전 기록
  • Notion 및 Confluence에서 가져오기
  • 우선 지원
Pro 구매
팀 2–50명
Team
€6.58/석/월€7.99
연간 청구 · €79/석/년
최소 2석
  • 공유 암호화 팀 볼트
  • 클릭 한 번으로 멤버 추가 또는 제거
  • 팀 전체 암호화 동기화
  • 역할 및 팀 대시보드
  • 누가 무엇을 썼는지 확인
팀으로 시작
규제 산업 / 50명 이상
Enterprise
맞춤형
대규모 조직을 위한 플랜

조직마다 고유한 보안 검토, 구매 절차, 컴플라이언스 요건이 있습니다. 귀사의 요건을 알려주시면 함께 검토하겠습니다.

영업팀 문의
  • 영원히 무료
    로컬 앱과 노트는 연결 없이도, 결제 없이도 당신의 것입니다.
  • 종속 없음
    모두 표준 Markdown 파일입니다. 원할 때 언제든 지식을 가지고 떠날 수 있습니다.
  • 언제든 취소 가능
    개인 플랜은 월 단위, 팀 플랜은 연 단위 갱신입니다. 포털에서 관리하세요.

가격 EUR · 부가세 포함 · 구독 관리: my.apilium.com

유효한 사업자 번호로 세금이 발생하지 않는 경우, 세전 금액이 청구됩니다.

측정하는 것: 없음

당신이 이걸 쓰는지 우리는 전혀 모릅니다.

바꿀 수 있는 방침이 아니라, 앱이 그렇게 만들어졌습니다. 안에 분석 라이브러리가 없고, 크래시 리포터도 없고, 화면을 그리려고 서버에서 가져오는 것도 없으며, 갓 설치한 앱은 어떤 기기에 있는지 결코 알아내지 않습니다.

어떤 종류의 분석도 없습니다

앱에는 분석이나 제품 사용 기록 라이브러리가 들어 있지 않습니다. 기본값으로 꺼 둔 게 아니라, 아예 없습니다.

크래시나 오류를 보고하지 않습니다

문제가 생기면 당신의 기기에서 생기고, 당신의 기기 안에 머뭅니다.

다른 어디에서도 불러오지 않습니다

글꼴과 리소스는 앱 안에 함께 들어 있습니다. 화면은 자신을 그리려고 서버를 호출하는 일이 없습니다.

갓 설치한 앱은 익명으로 남습니다

체험을 시작하거나 라이선스를 활성화하지 않는 한, 기기를 설명하는 정보는 아무것도 없습니다. 기기가 식별되는 순간은 그때뿐입니다.

우리 말을 그냥 믿지 마세요

앱이 네트워크에 나가는 곳은 작고 지루한 몇 군데뿐이고, 하나하나 지켜볼 수 있습니다. 정적 파일을 확인하는 업데이트 점검, 그리고 실제로 사용할 때만 연결되는 당신의 AI 제공자, 당신의 Notion 또는 Confluence 계정, 그리고 우리 라이선스 서버. 네트워크 모니터를 켜고 직접 확인해 보세요.

Under the hood

For the reader who does not believe marketing copy.

Everything above, restated as mechanism — names, curves, sizes, thresholds, and the places where a limit exists, including the ones that are not flattering. If you find something here the code does not do, we would rather hear about it than not.

The signed history

Every change is an action in a directed acyclic graph. An action carries its parent hashes, the author node, a per-author sequence number, a UTC timestamp and the payload. Its identity is BLAKE3-256 over those fields concatenated in a fixed order — parents, author, sequence, timestamp, payload — with the signature deliberately excluded, so signing never changes the hash. The signature is Ed25519 over the 32 raw digest bytes, not over the preimage and not over its hex rendering. The byte layout is published as a spec, aingle-dag-action-v1, so you can rebuild the preimage yourself; a test pins the published spec against the code that actually hashes, so the two cannot drift apart in silence.

Removal is a retraction, not a delete

Deleting a note does not erase anything. It appends a signed deletion action naming what it retracts, so the earlier state stays reachable and provable and time-travel survives. One exception, stated because you would find it: a prune operation does physically remove old actions under an explicit retention policy. It never prunes the tips, and it writes a checkpoint recording what it removed — but it is a real delete, and where it is exposed to AI tooling it is marked destructive rather than hidden among the read-only calls.

What the lock proves — and what it does not

A verified lock means two things at once: the Ed25519 signature on the anchoring action verified, and the note on disk still hashes to exactly what that signature attests. Either one failing yields no lock, and every error path fails closed — no key, no graph, a malformed hash or a missing action all produce "unverified" rather than the benefit of the doubt. "Signed, then edited" is reported as its own state instead of collapsing to unsigned. What it does not prove: the key is your vault's own, generated locally, so this is a self-attestation, not an identity — there is no certificate authority and no binding to a person. The timestamp is your machine's clock, sealed inside the signed bytes; there is no timestamping authority, so anyone holding the seed could back-date. And the signing seed is stored unencrypted next to the database. It proves these bytes were ingested and signed here and have not changed since. That is a smaller claim than "authentic", and it is the one we make.

Encryption at the sync target

One random 32-byte master key per target, generated on the device. Three subkeys derived from it with BLAKE3 derive_key under distinct context strings: one for content, one for blob names, one for a public target id. Content is XChaCha20-Poly1305 with a fresh random 24-byte nonce per write and a 16-byte tag. The master key is reachable two ways, both held only by you: a passphrase wrapped with Argon2id — the argon2 crate defaults, 19 MiB, 2 iterations, 1 lane, with a 16-byte random per-target salt — stored in a keybox on the target itself so any machine that can see the folder can unlock it; or a one-time recovery key, which is the master key rendered as 56 Crockford base32 characters with a checksum. Nothing is escrowed. We hold no copy and there is no reset, which is the same thing as saying we could not read your files even if we wanted to.

What actually lands in the folder

A blob's name is a keyed BLAKE3 hash of its vault path, Crockford base32 encoded — always 52 characters, so the length of a path leaks nothing either. The real path travels inside the sealed payload, so decrypting one blob is enough to place it: there is no manifest and no name table that could be lost or corrupted. The authentication tag covers the path, so a blob renamed or moved by anything other than the app is detected rather than silently accepted. Padding is applied to the plaintext before sealing: the padded length is the next multiple of 4 KiB up to 64 KiB, and the next multiple of 64 KiB above that. On disk a blob is that padded length plus exactly 40 bytes — a 24-byte nonce and a 16-byte authentication tag.

What an observer of that folder can still see

Stated here because you would find it anyway, and because a limitation you discover for yourself is worth far more doubt than one we hand you. Someone who can read the synced folder learns: that it is an Altretta target, because the header file is plaintext on purpose so a second machine can find the salt; the number of notes, since there is one blob each; and each file's size to within its padding bucket. Because a blob's name is a deterministic function of its path, every note keeps the same name for its whole life — a stable pseudonym. That determinism is what lets two machines agree where a note lives without a shared index, and it is also what lets an observer watch how often you edit any single note, note by note, from timestamps alone — without ever learning which note it is. Deletions are the sharpest of these, and they are exact rather than approximate: a removed blob is moved into a trash directory rather than unlinked, keeping its name and gaining the millisecond it was removed. So the precise number of notes you have deleted, the exact moment of each deletion, and which pseudonym each deleted note had while it existed are all plainly readable. The public target id is a stable fingerprint linking two folders to the same key. None of it discloses a title, a path, or a word of content.

What makes the assistant refuse

Retrieval embeds your question, over-fetches from the memory index, keeps only chunk entries and re-ranks them by pure cosine similarity — deliberately discarding the composite recency-and-importance score the memory layer would otherwise apply, because relevance to the question is the only thing that should decide a citation. A verdict of "grounded" requires the best match to clear the high threshold and at least 2 chunks to clear it: corroboration, not one lucky passage. With the neural embedder the product ships, those thresholds are 0.80 and 0.77, calibrated against a measurement that unrelated pairs top out near 0.76. Between the two is "weak"; below both is "ungrounded". The answerability gate is then: at least one visible source after your folder exclusions have been applied, and — if you asked for grounded answers only — a verdict of exactly "grounded". When that gate fails, no model call is made at all. Answering anyway is a separate flag that is never inferred on your behalf, and when you set it the weak passages are withheld from the model so it cannot cite what did not qualify.

The symbol graph

Twenty languages have symbol extractors, each a tree-sitter parse plus a query: Rust, TypeScript, JavaScript, Python, Go, Swift, Java, C, C++, C#, Kotlin, PHP, Ruby, Dart, Scala, Objective-C, Bash, Lua, R and SQL. Symbols get canonical identifiers and are emitted as signed triples through the same path as everything else in the graph. Edges are typed — defines, imports, references, calls — and carry a confidence tier: a call resolving to exactly one candidate is high confidence, while a call with homonyms and every bare reference are marked uncertain rather than asserted as fact. Files over 2 MiB are recorded as skipped rather than quietly ignored, and a project is budgeted at 750,000 symbols. Drift compares a note's last-written time against the newest signed change to the symbol it documents. The limitation, which the source states plainly: that time is the filesystem mtime, so a checkout, a restore or an rsync that rewrites mtimes will change the verdict.

Reading documents, and what gets dropped

Word, PowerPoint and their OpenDocument equivalents are parsed in pure Rust — no rasterising, no OCR, no native dependency. Spreadsheets go through calamine. PDFs use the pdf.js text layer; rasterising with OCR is a separate, opt-in tier that runs only on pages with no usable text, and pages left unread are recorded as debt rather than silently dropped. Extraction emits citation anchors — a page marker per PDF page, a heading per slide, a sheet-and-row anchor per spreadsheet block, and a section anchor for numbered sections in a regulation, keeping the numeral in the heading because it is the only stable name that section has. Slides are ordered numerically, so slide 10 follows slide 9 rather than slide 1. Caps are enforced by bounded reads instead of trusting a declared size: 32 MiB per XML part, 128 MiB per archive, 16 MiB of emitted text, 5,000 slides, 50,000 rows. A gap worth naming: spreadsheets report truncation as a warning and the other converters do not, so a very large document can be trimmed quietly. The extracted text is written as an ordinary companion Markdown file beside the source, so the normal ingest signs it like any other note — there is no extraction database, the companion file's recorded source hash is the idempotency record.

Where everything lives on disk

Your notes are Markdown files in your folder. The only thing the app adds inside it is a hidden control directory holding the vault format stamp and, for a team vault, the keyring. Everything derived — the graph database, the search index, the snapshot store, the signing seed — lives outside the vault in application data, and the app refuses to start if you point the database inside the vault, because its own writes would trigger a re-ingest loop. That separation is why removing the app leaves your folder untouched, and why the derived index is always safe to delete and rebuild. It is also, honestly, why version history does not travel with a synced folder today. Licence checks are offline: a signed token verified against a key compiled into the app, with no server call. If we disappeared tomorrow, the app keeps opening, reading, writing, searching and answering.

How to check all of this yourself

The engine is open source. github.com/ApiliumCode/aingle holds the signing, hashing, graph and grounded-retrieval implementation, under Apache-2.0 for individuals, academia and organisations under $1M revenue, with a commercial licence above that. The application itself is not open source, and we would rather tell you that than imply otherwise.

  • Reproduce a content hash: run any BLAKE3 tool over a note and compare it with the hash the app shows you. There is a pinned test vector in the public source to check your tooling against first.
  • Rebuild an action hash and verify its signature independently: the byte layout is published as a spec, and the public test suite exercises tamper-rejection and the fact that signing does not change the hash.
  • Confirm there is no telemetry: grep the source for the usual analytics and crash-reporting names, then list every URL literal in the Rust. What comes back is your own AI provider, your own connectors, and our licence and publishing endpoints — nothing else.
  • Watch the network: open a vault with a monitor running. Nothing should be contacted until you configure a model or deliberately click an account action.
  • Prove the deletion leak to yourself: turn on encryption for a scratch folder, add five notes, delete two, then list the target's trash directory. Two timestamped files. That is the leak, reproduced in a minute.
  • Confirm no reset exists: forget the passphrase and lose the recovery key on a scratch target. Nothing in the app, and nothing we hold, can open it again.
github.com/ApiliumCode/aingle
다운로드

오늘 당신의 플랫폼에서 사용 가능.

macOSApple Silicon (M1–M4)macOSIntel (x86_64)Windows10 / 11 · x64LinuxAppImage · deb

macOS 유니버설 (Intel + Apple Silicon) · Windows x64 · Linux AppImage/deb

자주 묻는 질문

궁금하실 것들.

정말 내 노트의 주인인가요?

네. 모든 노트가 디스크의 표준 Markdown 파일입니다. 어떤 편집기로도 열고, 백업하거나, 원할 때 Altretta를 떠날 수 있습니다. 지식은 당신과 함께합니다.

앱이 무료인데 왜 유료 플랜이 있나요?

데스크톱 앱, 내 노트에 기반한 근거 있는 답변, 그리고 폴더 1개 동기화는 영원히 무료입니다. 유료 플랜은 무제한 동기화 폴더, 다른 사람이 검증할 수 있는 페이지 게시, 암호화 팀 브레인을 추가합니다. 동기화할 폴더가 하나면 충분하다면 Free 플랜으로 충분합니다.

AI 답변을 어떻게 믿을 수 있나요?

모든 답변은 출처 노트를 인용하고 신뢰도 점수를 제공합니다. 내 노트에 근거가 없는 주장은 Altretta가 꾸며내는 대신 솔직히 알려줍니다.

AI 연결에 기술적인 지식이 필요한가요?

아닙니다. Altretta는 이미 설치된 AI 앱 — Claude, Cursor, VS Code 등 — 을 자동으로 감지하고 클릭 한 번으로 연결합니다. 설정 파일도, 키 붙여넣기도 필요 없고, AI가 볼 수 있는 폴더를 직접 선택할 수 있습니다.

AI 비용을 별도로 지불해야 하나요?

Altretta는 순수 메모리 레이어입니다. 자체 LLM이 없습니다. 자신의 구독으로 MCP를 통해 원하는 모델을 연결하므로, 이미 사용하는 AI를 활용하고 키 통제를 유지합니다.

기존 노트를 가져올 수 있나요?

네. Altretta는 일반 Markdown을 읽기 때문에 현재 노트 폴더를 그대로 사용할 수 있습니다. Pro 플랜은 Notion과 Confluence에서 원클릭 가져오기를 지원합니다.

암호화된 팀 브레인은 어떻게 작동하나요?

노트 내용이 사용자의 기기에서 암호화되는 볼트를 공유합니다. 따라서 팀 외부의 누구도 노트 내용을 읽을 수 없습니다. 저희도, 폴더를 호스팅하는 쪽도 마찬가지입니다. 접근 권한은 사람별로 부여되고 취소할 수 있습니다. 구성원을 제거하면 키가 교체되어 그 시점부터 아무것도 읽을 수 없습니다. 발견하시기 전에 먼저 말씀드리고 싶은 한 가지 한계가 있습니다. 파일 이름과 폴더 구조는 암호화되지 않으므로 호스팅하는 쪽에서는 볼트의 형태와 각 노트의 이름을 계속 볼 수 있습니다.

어떤 플랫폼에서 작동하나요?

Altretta는 오늘 macOS (Apple Silicon 및 Intel), Windows, Linux에서 사용 가능합니다. 다운로드는 항상 최신 버전을 가리킵니다.

지식의 통제권을 가져가세요.

프라이빗, 오프라인, 그리고 검증 가능. 내 노트, 내 AI, 내 규칙.