AI at work, data kept in

Use any AI model without sending your secrets.

Bolt is a desktop AI assistant behind one hotkey. It keeps your data on your device and masks secrets before any cloud model sees them. Free on Mac, Windows and Linux, and self-hosted for teams that need it inside their perimeter.

Bolt at a glance

Bolt at a glance. Left: files, clipboard, notes, recall and memory, calendar, email, screenshots and OCR, on-device vision, terminal, secure browser, passwords, local apps and role specific utilities. Centre: the Bolt workspace running on a laptop, with context staying on the device and actions leaving only with permission. Right: AI models, agents, the Agent Gateway, MCP tools and servers, ACP and A2A, SaaS applications, in-house systems, a tamper-evident audit trail, developer tools, custom connectors, SSO and SCIM, MDM, your DLP policies, and Windows, macOS and Linux. Across the middle: identity and access, data controls, masking and redaction, policies and approvals, tamper-evident audit.
Click to view full size, or open the PDF.
Open as PDF
  • Users: build their own Apps and bring anything to the launcher
  • Admins: provision and govern org-wide capabilities through one MCP-native manifest
  • Organizations: keep it all inside their own perimeter, identity-bound and audited at every layer
Patent-pending architecture Deep details under NDA

Capabilities

Why Bolt

Core capabilities that drive measurable enterprise impact.

Inside your perimeter, day one

Your data stays on your infrastructure.

  • Self-host on AWS, Azure, GCP, on-prem, or fully air-gapped
  • Identity: integrates with SAML, OIDC, JWT, and your existing IdP
  • Architecture designed for: HIPAA, GDPR, and DPDPA workflows

AI's reach, without AI's tax

Two cost levers most platforms don't give you. You spend tokens where they create value, on a defensible, predictable cost base.

  • No per-token markup: bring your own LLM keys: OpenAI, Anthropic, Bedrock, Vertex, Ollama, NVIDIA NIM, or your own fine-tuned model
  • Pay only for the work that actually needs a model: recognizing a format, decoding a token, a lookup, or calling a tool you authorized runs deterministically, with zero LLM tokens

Surfaces what matters, not what's loud

The One Thing™ patent-pending priority engine tells you the single most important thing to do right now.

  • Looks across: email, calendar, tasks, and messages
  • With a human-readable reason for the call

Open MCP integrations. No vendor lock-in.

Built on the open Model Context Protocol.

  • 105 in-house connectors: roughly 350 more through the Airbyte bridge, and any MCP-compliant server you already run
  • Out of the box: Jira, Confluence, Salesforce, GitHub, Notion and Zendesk, with Slack, Drive, and M365 in the connector gallery once your admin completes setup
  • Durable agents: self-hosted in your own perimeter, from Docker Compose to air-gapped

Bring anything to Bolt

Type or paste any value: a secret, a standard format, or your own proprietary record. Nothing is fetched or run until you choose it.

  • Recognizes the shape on-device: flags what's sensitive, and proposes the right move: decode, convert, validate, or pull the related details from your connected systems (only what your identity is entitled to)
  • Knows standard formats out of the box: JWT, base64/hex, timestamps, UUIDs, IBANs, file types, medical and geo codes
  • Teach it your own formats: once, with a simple manifest

Governed extensibility: one manifest, full control

Extend Bolt without giving up the keys.

  • One MCP-native YAML manifest: your integrations, the launcher's recognition, and what agents may call
  • Admins provision org-wide Apps: users build their own; admin Apps always win a conflict
  • Entitlements are enforced server-side, every call is audited, and Apps never run arbitrary code

Agentic Desktop Agent

Bolt doesn't just answer. It takes action.

Most AI assistants stop at "here's what I found." Bolt reads, writes, and executes across your entire stack: from email to your local file system.

Send & Reply to Emails

"Reply to John's proposal and CC the legal team."

  • Bolt reads the thread and drafts contextual replies
  • Sends via Gmail or Outlook, with your confirmation

Schedule Meetings

"Set up a 30-min sync with Sarah tomorrow at 2pm."

  • Bolt prepares the event, adds attendees, and generates a video link
  • Presents the invite for your approval

Manage Tasks

"Mark the auth PR task as done and create a follow-up for testing."

  • Bolt stages the updates across Jira, Linear, or Tasks
  • You confirm and it executes

Control Your Desktop

Bolt's native desktop agent gives AI direct access to your machine, sandboxed and permission-controlled.

  • Browse local files
  • Run terminal commands
  • Open applications

Phone → Desktop Bridge

On the train? A secure encrypted tunnel keeps your desktop connected.

  • Ask Bolt on your phone to find a file on your office MacBook
  • Run a build
  • Check logs

Multi-Machine Routing

"On my Windows PC, find the contract PDF."

  • Bolt intelligently routes to the right machine when you have multiple computers connected

FAQ

Questions?

Can Bolt run inside our own perimeter?

Yes. Every Bolt tier (Authorize, Backbone, and Certify) is self-hosted: Docker Compose for staging, Kubernetes for production HA, inside your own perimeter. Sparcle never hosts your data. All three expose the same platform; you choose by capability (governance, orchestration, compliance), not by who operates it.

What does Bolt save my team in real terms?

Bolt eliminates context-switching across email, calendar, tasks, docs, tickets, and code, collapsing tool-hopping into a single agent surface. Per-seat ROI scales with the number of systems your team uses daily and is most measurable as recovered productive time. Detailed ROI methodology available on request.

Does Bolt require data migration?

No. Bolt connects to your existing systems through open MCP integrations and direct connectors. Teams keep working in their existing tools; Bolt is the unifying agent layer above them, not a replacement.

How is our IP protected when we use external LLMs?

Bolt's security pipeline applies PII detection, policy guardrails, audit logging, and privacy-preserving context handling before any prompt leaves your perimeter. With BYOK and a covered LLM provider (DPA + zero-retention), you get the upside of frontier models without your IP entering training data. With BYO self-hosted LLM, nothing leaves at all.

What's the seat minimum?

Bolt Authorize: 10 seats. Bolt Backbone: 25 seats. Bolt Certify: 50 seats. Annual contracts. Below those minimums, Bolt is free to download for individuals, with no account and no time limit. It works out of the box on a free model, or point it at your own key or your own provider.

What's the Founding Customer Program?

First 50 customers get 25% off published pricing locked for 24 months, direct founder access, weekly office hours, and roadmap influence. Open through end of 2026 or until 50 customers are signed.

Can we see the architecture and security details?

Yes, under NDA. Detailed architecture briefs, security posture documentation, and patent claim summaries are shared during the pilot evaluation. Schedule an architecture review and we'll cover what's relevant to your environment.