You use your phone and computer for everything:
Work. Money. Messages. Identity.
But the device you rely on most is also the one you control the least.
Built as open platforms for data harvesting and surveillance, your daily OS sees every keystroke, your apps track every move, and your data lives where you don’t own it. In this ecosystem, you aren’t the owner. You are the product.
Existing solutions, like hardened or "secure" operating systems, force a false choice: privacy or usability. They replace your daily system, break ecosystems, and limit apps, pushing you to carry two phones or reflash the one you depend on just to feel safe.
Security and privacy shouldn’t require sacrifice.
Freedom begins when you step outside the system — not by hardening it, but by separating from it. To secure your digital world without compromising your daily habits, software solutions are no longer enough.
You need a physical boundary.
Your operating system sees
everything
Your apps track everything
Your data lives in places you don't own
So We Built One
Meet PlugMate: a separate, trusted device for your private digital life
TrustKernel PlugMate is a thumb-sized computer that runs its own fully isolated Android system. It doesn’t run on your phone or PC; it runs through them.
Simply plug it into your phone or computer to instantly launch a secure, private workspace for your data, apps, and identity.
PlugMate
Your Hardware-Isolated Secure Workspace, Thumb-Sized
A New Way to Carry Your Private Computing Space
Big Performance with Thumb-Sized
8-Core CPU
4GB RAM
128GB Storage
14.3g
Ultra-Light Build
Cross-Platform
Collaboration Powered by Android
A Complete Smart Computing Device
Hardware-Level Isolation
DualAuthenticationSystem
Full-Spectrum Privacy Control
Big Performance with Thumb-Sized
8-Core CPU
4GB RAM
128GB Storage
14.3g
Ultra-Light Build
Cross-Platform
Collaboration Powered by Android
A Complete Smart Computing Device
DualAuthenticationSystem
Hardware-Level Isolation
Full-Spectrum Privacy Control
Plug-and-Play Privacy System
Private Computing. Anytime. Anywhere.
PlugMate runs PlugOS, an Android-based secure operating system designed for private computing.
The moment you plug it in, your private system appears.
The moment you unplug it, it disappears completely and leaves nothing behind.
Plug-and-Play
PlugOS Full-SpectrumAndroid-Based Complete System
A Full Android Computer in Thumb Size
Mini Size, Fully Functional, Serious Performance.
PlugMate is a fully functional Android computer, not a stripped-down device. It runs standard Android apps, supports video, audio, camera, maps, messaging, browsing, wallets, and productivity tools - just like a phone or tablet.
How is it possible: PlugMate contains its own processor, memory, and fully encrypted storage, while securely reusing peripherals from the connected phone or computer without exposing your data. This design keeps PlugMate incredibly small, while computation and data remain fully isolated.
99%Smaller
than Regular Device
Delivers full functionality including
Camera
GPS
Network
Input
With an 8-core processor, 4GB memory, and 128GB encrypted storage packed into a device weighing just 14.3g, PlugMate delivers serious performance in a thumb-sized form and is powered directly by your phone or computer.
No battery, no decay, no recharging. Unlike secondary phones, PlugMate removes the battery, not capabilities. It draws minimal power from the host, ensuring it remains your "digital vault" for the next 10 years without needing a charge.
Cross-Platform Compatibility
One device. Every platform.
PlugMate works across Android, iOS, Windows, and macOS1, supporting universal connectivity for phones, tablets, and computers via the Type-C interface2. Your private system, apps and data stay isolated and identical everywhere you go.
With one PlugMate, any Type-C device becomes your secure workstation.
1 Supports iPhone 15+, iPad, Mac PC (Apple Silicon M1+) and other Apple devices with standard Type-C interface. 2 Compatible with smartphones, computers, tablets, and other screen-equipped smart electronic devices with USB Type-C OTG functionality.
Cross-Platform
iPhone
macOS
iPad
Android
Windows
iPhone
macOS
iPad
Android
Windows
Really Private?
Private by Architecture, not by Promises.
Hardware-Level Isolation
Your data lives only inside PlugMate. Encrypted.
With its own processor, memory and storage, PlugMate remains isolated from the host device. The only connection is a single Type-C interface, drastically reducing attack surfaces.
All data is encrypted by hardware at rest and is never exposed.
Hardware-Level Isolation
Your data lives only inside PlugMate. Encrypted.
With its own processor, memory and storage, PlugMate remains isolated from the host device. The only connection is a single Type-C interface, drastically reducing attack surfaces.
All data is encrypted by hardware at rest and is never exposed.
Chip-Level Dual Authentication
No Trust. No Boot.
Before PlugMate starts, two secure-chip verifications must succeed:
Device authentication: PlugMate only boots when connected to an authorized device.
User authentication: only an authorized user can unlock and boot PlugMate.
If either check fails, PlugMate simply does not boot and never decrypt your data.
This innovative pre-authentication boot process blocks:
Backdoors
Firmware tampering
Supply-chain attacks
Chip-Level Dual Authentication
No Trust. No Boot.
Before PlugMate starts, two secure-chip verifications must succeed:
Device authentication: PlugMate only boots when connected to an authorized device.
User authentication: only an authorized user can unlock and boot PlugMate.
If either check fails, PlugMate simply does not boot and never decrypt your data.
This innovative pre-authentication boot process blocks:
Backdoors
Firmware tampering
Supply-chain attacks
Extreme Data Protection
Silent. Instant. Irreversible.
PlugOS includes a duress password and brute-force self-destruction mechanisms. Under coercion or physical attack, your data protects itself instantly and permanently.
Designed not just for privacy, but for personal safety.
Extreme Data Protection
Silent. Instant. Irreversible.
PlugOS includes a duress password and brute-force self-destruction mechanisms. Under coercion or physical attack, your data protects itself instantly and permanently.
Designed not just for privacy, but for personal safety.
Privacy by Design
Your Data, Yours Only.
PlugMate is built with privacy by design. Access, usage, and control of your data remain exclusively in your hands.
Privacy is not achieved by removing capabilities, it's achieved by giving you control over them.
Zero Data Collection
PlugOS is designed to collect no user data.
Transparent Network Control
The built-in system firewall allows you to monitor network access logs and block high-risk app connections. All network activity is made fully "visible" and "controllable" to you.
Sensor Virtualization
Integrated peripheral virtualization and anti-tracking technologies simulate or block sensors like GPS and SIM cards. This helps to prevent hardware fingerprint tracking and effectively thwarts eavesdropping attempts.
Local processing
The built-in apps, from the keyboard and browser to the app store, are re-engineered for complete data localization or privacy enhanced.
Used on Different Occasions
PlugMate isn't just for "privacy geeks", it's for anyone who needs a separate, trusted digital space.
Risk Isolation
Keep uncertain apps and activities away from your main device
Some apps are necessary but don't belong on your everyday phone — apps you don't fully trust or simply don't want mixed with your personal device. Installing them directly mixes unknown risk with your photos, contacts, and accounts.
PlugMate creates a hardware-level sandbox. By moving these apps to PlugMate, your main phone remains clean. Unplug the PlugMate, and the risk vanishes.
Keep Risk in Its Place. Instant Reset. Zero Residue.
Your Apps Run Free. Your Main Device Stays Safe.
Data & Asset Protection
A hardened vault for high-stakes assets
Some moments carry higher stakes than everyday use. Credentials, sensitive data, and digital assets demand stronger guarantees than software protection alone.
PlugMate creates a physical security boundary. Your data and assets stay protected inside its own trusted system, independent of your phone or computer.
High-Stakes Apps. Physically Secured.
View Sensitive Files. Not on Your Device.
Private Moments. Belong on a Private Device.
Cross-Platform Freedom
One Android system across all your devices
You may love iPhone or Mac hardware, but closed ecosystems limit flexibility. Carrying a second phone is an awkward compromise.
PlugMate bridges the gap. Plug it into any Type-C phone or computer and instantly access a full Android system. Get the freedom of a second phone without the bulk.
Android on Your iPhone. No Second Phone Needed.
Make any PC into your private workplace.
Workspace moves with you. Any device, anytime.
Personal Control & Privacy
A system that you fully own and control
Privacy is about control — when a system runs, where data lives, and who can access it. Always-on devices and managed environments take that control away.
PlugMate is your "ghost" system. The system, the apps, and their behavior exist only on your terms and under your control. Plug it in when you choose. Unplug it, and everything stops.
Communicate securely, control your privacy.
Browse Privately. Surf Anonymously.
Unplug, and everything disappears instantly.
Designed Around Real Use
Plug and Play
Continuous Use
Careful Protection
Simultaneous Use
Specifications
Model:PS01
Processor:MediaTek Helio G70
RAM:4GB
Storage:128GB
OS:PlugOS, based on Android 14
Interface:Type-C male 480Mbps
Power supply:USB DC5V 1A (Max)
Material:Aluminum + PC
Product size:50mm * 19mm * 8mm
Product weight:14.3g
Certification:FCC、 CE、 RoHs、MFi
Supported Devices:USB-C devices 1
1 iPhone 15+, iPad, Mac PC with Apple Silicon M1+, Android phone & tablet, and Windows PC
What's in the Box
PlugMate USB-C Device
Protective Case
USB Type-C Cable
Quick Guide Card
Product Key Card
Warranty Card
Our Philosophy
Privacy isn't an option. It's the foundation.
True privacy and freedom don't depend on expert knowledge, endless settings, or near-perfect user behavior. They begin when you take control back-in a simpler, more effortless way. That's why we built PlugMate not as another app or feature, but as a dedicated, trusted device - without sacrificing simplicity or ease of use.
Who Are We?
We are the core team behind TrustKernel, and we've been working closely together for over a decade. Over the years, we've turned cutting-edge international research into real-world secure operating systems, secure chips, and privacy technologies — deployed on over one billion devices worldwide and adopted by major global manufacturers. With all this experience, we are now on a mission to bring this proven, large-scale security directly into everyone's pocket with PlugMate.
Certifications & Compliance
PlugMate is built by a team with a proven record in audited, certified secure systems. Independently verified across security, privacy, quality, and compliance standards.
Security & Privacy: CC EAL 4+ · ISO/IEC 27001 · 27701 · 29151 Engineering & Quality: CMMI Level 3 · ISO 9001 Compliance: Apple MFi · FCC · CE · RoHS
Service You Can Trust
100%
Delivery
1-Year
Warranty
Free Shipping
to US/EU
Timely
Customer Service
Frequently Asked Questions
Does PlugMate require an app to connect?
Yes. A lightweight client app is required.
PlugMate runs PlugOS inside its own hardware and no PlugMate data is stored on the host device. The client app simply provides a window to display the PlugMate workspace and reuse the host's screen, keyboard, and network.
Does PlugMate support Google Play?
Yes, optionally.
PlugOS provides optional access to Google Play, which can be enabled on demand. PlugMate also offers an optional PlugOS app directory focused on privacy- and security-oriented applications.
Can the host device monitor what's inside PlugMate?
PlugMate is designed to protect your data from the host device.
Even if the host phone or computer is infected with malware, PlugOS is designed to prevent direct access to data stored or processed inside PlugMate, including both data at rest and data in use.
The client app includes runtime environment security checks to mitigate common application-level attacks such as screen capture, recording, and injection.
However, like all security products, no system can guarantee absolute protection—especially against kernel-level attacks on the host OS. PlugMate significantly reduces risk compared to software-only solutions.
How is the performance and heat management?
Smooth and cool for daily use.
PlugMate has its own processor and memory, optimized for privacy-focused workflows and everyday tasks. Thanks to efficient hardware and power design, it generates only mild warmth during extended use and remains safe to handle.
Does PlugMate drain my phone's battery?
Only a small amount.
PlugMate draws power from the host device but is designed for low-power operation. In typical use, the additional battery consumption is modest and depends on usage patterns, apps, and the host device.