MCP endpoint
/mcpEnigma Auto chooses an online private route for each message. No provider-native memory. No silent chat retention.
Run the same minimized prompt through distinct online routes without forced synthesis.
Hosted Workers AI returns image bytes directly to this tab. Enigma does not write generated media to its database.
Generated images appear here.
Workers AI generates a cinematic keyframe, then this browser renders and encodes a disposable WebM. Neither keyframe nor video is written to Enigma storage.
Generated video appears here.
Generate through a selected online route, then execute JavaScript in an opaque-origin iframe with network, storage, popups, forms, and top navigation blocked. Enigma does not store briefs or source.
Ready. No code has run.
Cloudflare Browser Run renders a snapshot. Local, private, credential-bearing, and special-use targets are blocked. Session targets expire after 30 minutes and are purged at least every 15 minutes.
No remote browser session.
The hosted MCP endpoint is independent from the CLI and accepts revocable Enigma web API keys.
/mcpenigma_completeenigma_generate_image
Issue a key in API access with mcp:invoke plus the tool scope.
Hosted keys use salted, server-keyed HMAC-SHA256 verifiers. The raw key appears once and stays only in page memory until dismissed.
Every route names its provider, modality, trust boundary, and retention statement.
Enigma stores daily aggregate units by modality and model. No prompt, output, transcript, or media bytes enter usage rows.
Aggregate deployment activity without prompts, outputs, transcripts, URLs, or identity fields.
Text, image, and video routes published by this deployment.
Target URLs are deleted on burn or auto-expiry; the aggregate exposes counts only.
Loading live boundary…
The deployed preview is free within strict abuse quotas. Paid checkout remains disabled until verified funding, entitlement, refund, and operator controls are configured.
Hosted chat, image generation, local disposable code, cloud browser snapshots, API keys, MCP, and accountless credits.
Higher shared limits and additional provider routes after billing approval.
Expanded media, browser, API, and council allocation after billing approval.
Highest hosted limits after operational, legal, and support gates are complete.
The ledger stores a pseudonymous vault ID, balances, timestamps, and credential verifiers—not an email or account identity.
No credits session. Online funding is not configured.
Smart Privacy minimizes common identity anchors in this browser before model requests. It is minimization, not anonymity or a cryptographic proof.
Destroyed on refresh. Never sent until you submit.
No prompts, outputs, transcripts, generated bytes, or code source. Browser target URLs exist only for active sessions of at most 30 minutes and purge within 15 minutes after expiry. Daily abuse quotas store rotating one-way network actor hashes for up to eight days.
Cloudflare processes the request under its service terms. Network metadata remains observable.
No minimized request yet.