On-Device AI & Privacy
Notes from building iPhone apps that run AI entirely on-device: prompt injection, on-device models, data privacy, and what “compliance by construction” actually looks like.
Filter by topic:
What Is Prompt Injection? A Hands-On Guide for the Curious
September 1, 2026
Prompt injection is the most practical AI attack. And the best way to understand it is to do it. Here's how it works, why it works, and how to try it safely on your own device.
Read more →The OWASP Top 10 for LLM Applications is the closest thing AI engineering has to a shared vocabulary for risks. Here's each item, translated from committee-speak into plain language.
Read more →PromptSiege grades your attacks with an AI judge. Here's why that judge runs on your iPhone. And what the cloud-based alternative would mean for your data.
Read more →On-Device AI: What Actually Runs on Your iPhone
September 3, 2026
Apple Intelligence, open-weight models, Neural Engine, tokens-per-second. What does 'AI on your phone' actually mean? A plain-language tour of the stack inside our notebook app.
Read more →Most 'private' apps still sync your notes through a server. Here's the checklist we use to evaluate any note-taking app. Including our own. And the questions you should ask.
Read more →Airplane Mode Is a Feature: Building Apps With Zero Servers
August 15, 2026
What happens when you design an app so it never needs the network at all? Notes from building two iPhone apps with no backend, no accounts, and no telemetry.
Read more →