语言: English | Português (Brasil) | 简体中文 | 繁體中文 | 日本語 | 한국어 | Türkçe | Русский | Tiếng Việt | ไทย | Deutsch
官方网站: https://datamoat.org GitHub 仓库: https://github.com/max-ng/datamoat
用于 sessions、images、files/PDFs 和 SKILL.md folders 的本地加密备份 archive。
保护、导出、备份、分析、搜索和复用你用 ChatGPT、Claude、Codex、Cursor、DeepSeek、Qwen 和 OpenClaw 构建的一切。 DataMoat 将你的 AI 工作历史保存在本地并加密,完整保留原始来源记录,同时建立统一层,方便分析、搜索、导出、复用、交接和私有 AI memory。
你未来最有价值的 AI 数据已经在消失。 立即下载 DataMoat,看看你还能捕获多少 ChatGPT、Claude、Codex、Cursor、DeepSeek、Qwen 和 OpenClaw 工作历史。
核心备份范围: DataMoat 会把受支持的 skills + sessions + attachments 备份进同一个本地加密 memory archive。Skills 会以完整文件夹快照保存,而不只是保存名称。
拥有自己 AI 数据的人和公司,会赢得未来。
DataMoat 是一个 AI work history memory archive,面向使用 ChatGPT exports、Claude CLI、Claude Desktop、通过 Claude Code GUI workflow 使用 DeepSeek 和 Qwen、Codex CLI、Codex app、Cursor、OpenClaw 以及其他 AI 工具的个人和团队。它会保存完整工作记录:sessions、来源存在时本地保存的 thinking tokens 和 reasoning blocks、prompts、responses、tool output、files、attachments、metadata、skills folder contents,以及同一台机器上的原始来源记录,让你的工作之后仍然可以复查、受保护、复用,并更容易交接。
DataMoat 保留两层数据:
- Raw archive: 原始 session JSONL、SQLite records、logs、attachments、metadata、skills folder snapshots,以及任何本地保存的 thinking tokens 或 reasoning blocks,会尽量以接近来源格式保存。
- Normalized index: 来自不同工具的 records 会转换成共同 schema,方便你跨工具分析、搜索、复查、导出、复用和交接工作。
目前支持的来源: ChatGPT export ZIP/文件夹导入、Claude CLI、Codex CLI、Codex app local sessions、macOS 上的 Claude Desktop local-agent sessions、Claude Code GUI workflow 写入本地时的 DeepSeek 和 Qwen sessions、受支持的本地 OpenClaw session records,以及受支持的本地 Cursor agent transcripts。 更多数据来源和平台版本已在 roadmap: star 和 watch 这个 repository,就可以跟进新的 capture integrations 和平台更新发布。
DataMoat 现在可以把支持的 ChatGPT export ZIP 文件或解压后的 export 文件夹导入到同一个加密本地 memory archive 中,和 Claude、Codex、Cursor、DeepSeek、Qwen、OpenClaw、skills 与附件放在一起保护。
- 恢复、查看、搜索和备份 ChatGPT exports。 支持的对话、分支、附件、assets 和 raw export 文件会导入到加密 vault。
- 标注重要上下文。 给会话和单条消息加书签,对有用或较弱的回答投票,并用筛选视图快速找回可复用内容。
- 保留 raw export,同时避免浪费磁盘。 DataMoat 保留原始 source records,并把重复度高的 raw backup data 存入压缩加密 archive;真实 source-record 测试显示 raw archive 大约是原始来源字节的 60%。
- 跨电脑迁移工作。 复制 DataMoat 文件夹到另一台机器,即可跨 macOS、Windows 和 Linux 恢复,包括 Mac 到 Windows、Linux 到 Mac。
- 随身保存第二份备份。 把加密 DataMoat 文件夹保存到 USB 或外置硬盘,让 AI 工作历史可以独立于原电脑保存和携带。
- 让完整 AI 工作历史保持可恢复。 本地 records 可能会在 compaction、cleanup、retention change、account downgrade、换机或环境丢失之后变得难以重新查看。
- 趁最完整的本地版本仍然存在时保存。 DataMoat 会保存本地写入的 transcript,包括来源把 thinking tokens 和 reasoning blocks 写入磁盘时的内容。
- 备份周边工作上下文。 DataMoat 会把受支持的 sessions、attachments 和基于
SKILL.md的 skills folder contents 保护在同一个加密 memory archive。 - 搜索过去 prompts、solutions、tool output 和 thinking-token context。 不依赖 live service view,也可以找回以前的 fixes、workflows、timestamps 和 attachments。
- 保护个人和团队的 continuity。 每台受保护的机器都可以保留自己的本地加密 archive,方便之后 review、handoff 和 audit。
- 保持 records 加密并由本地控制。 其他 software 或 services 无法直接读取 memory archive;只有经批准的 unlock 和 recovery path 才能解密。
- 使用 AES-256-GCM,为 transcripts、skills、attachments 和 state 建立 本地加密 memory archive。
- 保存内容留在本地,以加密 memory archive files 保存,而不是 plaintext transcript dumps。
- 强本地验证,支持 password、可选 TOTP 和 24-word recovery phrase。
- 支持 Mac 上的 Secure Enclave-backed unlock path,提供硬件辅助日常 unlock。可参考 Apple 对 Secure Enclave 的介绍。Touch ID 是 packaged macOS app path 的一部分。
- Helper-owned key custody,让 main UI process 不会持有 active memory encryption key。
- Tamper-evident local audit chain: 当前本地 audit entries 会用 hash chain 串起,并可用
datamoat audit verify验证。 - Versioned local state,让受保护 storage 可以随时间安全 migrate。
- 默认使用 Electron shell,减少 general-purpose browser 和 browser-extension exposure,UI 只 bind 到本地
127.0.0.1。 - UI 无第三方 font 或 CDN dependency。
| Platform | Status | Notes |
|---|---|---|
| macOS | 目前支持 | Source install 和已签名 packaged DMG 已可用 |
| Linux | 目前支持 | Source install 已可用 |
| Packaged macOS DMG | 下载 DMG (推荐) | 已签名 / notarized Apple Silicon DMG,在支持的 Mac 上支持 Secure Enclave + Touch ID unlock |
| Windows x64 / ARM64 | ZIP + DataMoat.exe |
Windows 11 x64 和 Windows 11 on Arm 的未签名 manual packages;x64 已通过 GitHub Actions packaged runtime smoke,ARM64 已通过真实 VM UI/background capture smoke;signed installer 仍在制作中 |
| Source | Status | DataMoat 保存内容 |
|---|---|---|
| Claude CLI | ✅ | 完整本地 transcript,包括存在时本地写入的 thinking blocks |
| Codex CLI | ✅ | 捕获受支持的本地 Codex CLI session records;会保存 transcript text、tool output、timestamps、metadata 和 stable image attachments |
| Codex app | ✅ | 捕获受支持的本地 Codex app session records;会保存 transcript text、tool output、timestamps、metadata 和 stable image attachments |
| Claude Desktop local-agent sessions (macOS) | ✅ | 存在时支持本地 Claude Desktop agent session records |
| DeepSeek via Claude Code GUI | ✅ | 当 Claude Code GUI 为 DeepSeek-backed sessions 写入本地 records 时,会保存 transcript text、tool output、timestamps、metadata、skills folder snapshots、images 和受支持的 attachments |
| Qwen via Claude Code GUI | ✅ | 当 Claude Code GUI 为 Qwen-backed sessions 写入本地 records 时,会保存 transcript text、tool output、timestamps、metadata、skills folder snapshots、images 和受支持的 attachments |
| OpenClaw | ✅ | 受支持的本地 OpenClaw session transcripts 和 metadata |
| Cursor | ✅ | 捕获可读取的本地 Cursor agent-transcripts JSONL records,包括存在时的 text 和 tool blocks |
| Attachments | ✅ | 加密 image 和受支持的 file/PDF blocks,并链接回来源 sessions |
| Skills folders | ✅ | Global 和 project SKILL.md folder snapshots,包括 SKILL.md 和包含的 helper files,而不只是 skill name |
- Memory archive encryption: transcripts、skills、attachments 和本地 state 会以 AES-256-GCM at rest 加密。
- Owner-only local file permissions: 受保护的 memory archive files、attachment blobs 和 state files 会用限制性本地 filesystem modes 写入。
- Password handling: passwords 会以
scryptverifiers 保存,不是 plaintext。 - Authenticator support: TOTP 可配合 Google Authenticator、1Password、Authy 等标准 authenticator apps 使用。
- Recovery design: 每个 memory archive 都会有 24-word BIP39 recovery phrase。
- Local-only UI: UI bind 到
127.0.0.1,并使用HttpOnly+SameSite=Strictcookies。 - Reduced browser attack surface: 默认 Electron shell 避开一般用途 browser path;需要时仍保留 browser fallback。
- Local API write protection: 修改数据的 requests 必须来自同源,并带有 CSRF token。
- Unlock retry hardening: password、Touch ID 和 recovery failures 会 back off,避免无限快速重试。
- Trusted source updates only: in-place git updates 只允许在 clean working tree 上,针对 allow-listed remotes / branches。
- Redacted diagnostics: health、crash、log 和 audit artifacts 写入前会 scrub secrets。
- Key isolation: Electron renderer 或 browser fallback 不会收到 raw memory encryption key。
- Auditability: security-relevant local events 会写入 hash-chained audit log。
datamoat audit verify可侦测当前本地 log 被改动或断链的 entries;它不是 remote notarization service 或 deletion-proof ledger。 - Backup integrity: viewer 会以 sealed memory archive copy 作为 source of truth,而不是可变的 live source transcript。
DataMoat 使用 24-word BIP39 phrase,因为它是高价值加密 memory archive 的长期 recovery material。12-word BIP39 phrase 有 128 bits entropy,而 24-word phrase 有 256 bits。12 words 仍然很强,但对于可能需要保护多年 access 的 recovery material,DataMoat 选择更大的安全 margin。
flowchart TD
A["受支持的本地 transcripts"] --> B["Realtime watcher"]
B --> C["Random memory encryption key"]
C --> D["AES-256-GCM encrypted memory archive / attachments / state"]
P["Password"] --> P2["scrypt verifier + wrapped release"]
T["支持 Mac 上的 packaged macOS app"] --> T2["Secure Enclave-backed release + Touch ID"]
G["TOTP authenticator"] --> G2["second-factor gate"]
R["24-word phrase"] --> R2["recovery release path"]
P2 --> H["Helper-owned active key session"]
T2 --> H
G2 --> H
R2 --> H
H --> D
H --> U["Local UI / Electron shell"]
已签名 / notarized macOS DMG 是 Mac users 推荐的安装方式。Source install 仍然可用于 Linux、development 和 fallback cases。macOS DMG 可从 DataMoat release downloads 下载: https://downloads.datamoat.org/releases/v2.0.14/DataMoat-2.0.14-macos-arm64.dmg,并包括支持 Mac 上的 Secure Enclave + Touch ID unlock、menu-bar login 自动启动,以及通过 DataMoat R2 release feed 的 packaged auto-update。Windows x64 和 ARM64 目前提供未签名 ZIP + DataMoat.exe packages,signed installer 正在完成中。
Release downloads:
每个 Windows ZIP 都包括 DataMoat.exe 和所需 app files。解压 Windows package,保持 folder 内容放在一起,然后执行一次 Install DataMoat.cmd。它会 launch DataMoat,并为当前 Windows user 注册 startup,让 tray/background app 在 login 或 restart 后自动回来。这个仍然是 portable ZIP package,暂时还不是已签名 single-file installer。
Mac users 应先使用已签名和 notarized 的 packaged DMG: Download DMG。除非 user 明确想 source install,或者 packaged release 无法使用,否则不要在 macOS 从 git clone 开始。
当你看着 target desktop 时,可以让 Claude CLI、Codex CLI 或 OpenClaw 帮你安装 DataMoat。
Typical prompt:
使用 DataMoat release downloads 里的最新已签名 macOS DMG,在这台 Mac 安装 DataMoat。将 DataMoat.app 复制到 Applications,启动它,然后在本地 setup UI 出现时告诉我,让我可以亲自在受保护 desktop 上完成 password、authenticator、Touch ID 和 recovery steps。
Important:
- AI agent 可以开始 install 和准备 app
- 最后 recovery 和 unlock setup 仍然应由 human user 在受保护机器上完成
- 如果你使用 OpenClaw、Telegram、WhatsApp 或其他 remote chat relay,而且看不到 target desktop,请使用下面专用 remote no-screen flow,而不是一般 AI-assisted flow
如果 install 是通过 OpenClaw、Codex 或任何 remote chat relay 开始,而你看不到受保护 desktop,请先使用 packaged macOS DMG 或 Windows ZIP,并用单一 no-screen flag 启动已安装 app。
macOS remote prompt:
使用最新已签名并 notarized 的 macOS DMG,在这台 Mac 安装 DataMoat。
除非 DMG 安装失败,否则不要使用 git clone 或 source install。
Steps:
1. 下载最新 macOS DMG:
https://downloads.datamoat.org/releases/v2.0.14/DataMoat-2.0.14-macos-arm64.dmg
2. Mount DMG。
3. 将 DataMoat.app 复制到 ~/Applications。
4. 完全照以下方式 launch:
~/Applications/DataMoat.app/Contents/MacOS/DataMoat --datamoat-remote-no-screen
Remote no-screen pre-setup capture 只使用 --datamoat-remote-no-screen。
不要在这个 chat 内完成 password、authenticator、Touch ID 或 recovery phrase setup。
Launch 后告诉我:
DataMoat 已经由 DMG 安装,并已开始 remote no-screen capture。我之后必须在受保护 desktop GUI 上完成 setup。
Windows remote prompt:
使用最新 Windows ZIP 和 DataMoat.exe,在这台 Windows machine 安装 DataMoat。
不要使用 git clone 或 source install。
Steps:
1. 从 DataMoat release downloads 下载正确的最新 Windows ZIP:
x64: https://downloads.datamoat.org/releases/v2.0.14/DataMoat-2.0.14-win32-x64.zip
ARM64: https://downloads.datamoat.org/releases/v2.0.14/DataMoat-2.0.14-win32-arm64.zip
2. 将 ZIP 解压到 Downloads。
3. 完全照以下方式 launch:
%USERPROFILE%\Downloads\DataMoat-win32-<arch>\DataMoat.exe --datamoat-remote-no-screen
x64 使用 DataMoat-win32-x64,ARM64 使用 DataMoat-win32-arm64。
Remote no-screen pre-setup capture 只使用 --datamoat-remote-no-screen。
不要在这个 chat 内完成 password、authenticator 或 recovery phrase setup。
Launch 后告诉我:
DataMoat 已经由 Windows ZIP 安装,并已开始 remote no-screen capture。我之后必须在受保护 desktop GUI 上完成 setup。
安装 DMG 后的 manual macOS launch command:
"$HOME/Applications/DataMoat.app/Contents/MacOS/DataMoat" --datamoat-remote-no-screen使用这个 mode,可以防止 password、authenticator enrollment secret、Touch ID prompt 和 24-word recovery phrase 出现在 Telegram、WhatsApp、OpenClaw chat、screenshots 或任何其他 remote relay。DataMoat 会立即开始以 pre-setup encrypted capture 收集受支持的本地 records,但完整 unlock setup 仍然必须之后在受保护 desktop 完成。
Remote install 完成后,agent 应报告 DataMoat 已成功安装,并已开始捕获受支持的本地 records。当你返回受保护 desktop,在当地打开 DataMoat 并完成 setup。不要在 bot conversation 里面完成 password、authenticator、Touch ID 或 recovery setup。
Linux fallback when no DMG exists:
git clone <repository-url> datamoat
cd datamoat
bash install.sh --remote-no-screenSource installs 建议使用 git clone。
git clone <repository-url> datamoat
cd datamoat
bash install.sh
datamoatRequirements:
Node.js 18+macOS或LinuxmacOS: Xcode Command Line Tools for local native buildsLinux: 适合你 distro 的一般 Node build environment
First setup flow 会在本地显示 recovery material:
- password
- authenticator enrollment secret / QR
- 24-word recovery phrase
Final memory setup 应该在受保护机器的实际 desktop screen 完成,而不是通过 chat apps、screenshots 或 remote messaging channels relay。
datamoat
datamoat status
datamoat stop
datamoat scan
datamoat audit verify
datamoat update checkAudit verification 会检查当前磁盘上 audit log 的完整性。若无 external checkpoint,它本身无法证明一个本地 audit file 从未被有 write access 的人 delete、truncate 或完整 rewrite。
Live git source installs 支持 in-place source updates。Packaged macOS installs 使用 DataMoat R2 release downloads 作为 packaged update source: DMG 用于首次安装,之后 packaged updates 会下载 signed ZIP payload,并通过 macOS app updater 应用,而不需要 user 每次 release 都 mount 新 DMG。
DataMoat 备份的是你 device 上已存在、而且你已可访问的受支持本地 transcript files。
它不会授予你对内容或 source services 额外权利。你仍然有责任遵守 ChatGPT、Claude、Codex、DeepSeek、Qwen、OpenClaw、Cursor 以及你使用的任何其他 source service 适用的 terms、policies、plan restrictions 和 internal rules。
DataMoat 旨在保护你自己机器上已经存在的 AI records。它不是让 sessions、skills、attachments 和 memory files 继续散落在已知本地路径里,也不是依赖不透明的 memory plugins,而是加入由用户控制的 local encryption、backup scope、recovery 和 auditability。
当这些 records 已经存在于本地时,DataMoat 也可以保留并迁移 captured versions 或 alternate conversation branches 里的 images、files/PDFs、generated assets 和 attachments。多数 AI memory plugins 和 simple export tools 只停留在 text;DataMoat 会把产生这些工作的 surrounding files 一起保存在 work history 里。
DataMoat 不会为你的 AI work history 创造新的访问权限。它保护的是你电脑上 source-tool folders、exports、logs、attachments 或 session stores 里已经存在、但可能仍然分散、可读且未加密的 local records。
很多 AI tools 本身已经把 work history 当作普通本地文件存放在电脑上。任何拥有这个 user account、disk、backup 或 source-tool folders 访问权限的人或 process,都可能在 DataMoat 保护之前读到这些 records。DataMoat 不会让这些 data 变得更 exposed;它会把用户选择的 already-present records 移入由用户控制的 encrypted archive。
DataMoat backup scope 由用户和受保护机器上已经可用的 source records 决定。它不会绕过 account permissions,不会解锁 remote services,也不会授予超过用户在这台电脑上已有范围之外的 rights。
DataMoat 不是要求你从零创建一个新的 sensitive dataset。对许多 AI tools 来说,这个 dataset 已经以 local transcripts、logs、exports、SQLite records、JSONL files、attachments 和 skills folders 的形式存在于你的电脑上。
如果没有专门的 archive,这些 records 可能继续散落在可预测的本地路径里,只受普通 OS account permissions 控制。DataMoat 的工作是帮你识别这些 records,把用户选择的 supported records 复制到本地 encrypted vault,并保留一个由你控制、可恢复、可搜索、可审计的 archive。
许多 AI tools 已经把 transcripts、tool output、attachments、project context,有时还有 reasoning-related blocks,作为普通本地文件保存。这些文件可能位于已知 application folders、exports、logs、SQLite databases、JSONL transcripts 和 attachment caches。任何以同一 OS user 身份运行的 process,都可能已经能够读取其中一部分。
DataMoat 不会创建对 remote AI services 的新访问,也不会绕过 OS permissions。它只读取当前本地用户已经可访问的 records,然后把用户选择的 supported records 存入由用户控制的本地 encrypted archive。受支持的本地读取路径和捕获原因都可以在公开的 application code 中审阅;DataMoat 不使用隐藏的 cloud collection,也不使用未公开的 remote capture。
DataMoat 不会神奇地抹掉原始 source files。除非用户选择 cleanup/export workflow,原始 records 仍可能留在 source apps 的 folders 里。DataMoat 通过创建受保护的 encrypted copy 来减少分散 plaintext 暴露;它不能替代 endpoint security、disk encryption 或 source-app retention policy。
安装 DataMoat 会引入一个 local watcher/importer process,并让它访问用户选择的 AI record locations。作为交换,用户获得 searchable encrypted archive、recovery path、audit log 和 portable backup,而不是让重要 AI work 继续散落在 unencrypted local files 里。
Windows packages 目前是 unsigned manual builds,signed installer 仍在进行中。Codebase 公开供审阅;需要 signed 或 managed builds 的 teams 可以联系我们。
你不需要是 power user 才能开始拥有自己的 AI work history。DataMoat 让你今天就可以从一个小的 local archive 开始,然后随着 conversations、files、prompts 和 project context 增长,看见它的价值不断累积。
Enterprise deployment 和 management features 已列入 roadmap。更多 enterprise-focused capabilities 将会推出;star 和 watch 这个 repository 以跟进更新。
问题或 deployment help:
免费:允许个人使用和公司内部使用。
许可证见 LICENSE.md,简短说明见 LICENSE-DETAILS.md。
DataMoat 官方网站: https://datamoat.org

