You are reading Nightly documentation for 0.12.6.dev0+g563af09.

This documentation may describe behavior that differs from Stable.

Open Stable documentation

Privacy-reviewed training data

Privacy-reviewed training data

Holaryn can turn successful local runs into JSONL for a separate fine-tuning
workflow. Nothing is captured automatically. You choose the runs, inspect a
redacted preview, and give exact consent before files are written.

This feature creates data; it does not start a training job, upload a dataset,
change model routing, or promote content into memory.

Use the Training data page

Open Training data in the primary navigation.

  1. Select one or more eligible runs. Holaryn only offers successful terminal
    runs owned by the local operator. Running, failed, cancelled, foreign,
    quarantined, incomplete, or integrity-failing runs are unavailable.
  2. Choose a format and content options. System messages, resolved context, and
    tool results are omitted by default. Tool results can contain file contents,
    so include them only when they are actually needed.
  3. Add any project-specific private strings, one per line. These values are
    used for exact matching during this request and are not stored in preview
    metadata, the export index, or provenance.
  4. Select Create privacy preview. Review every redaction category, safe
    location, fidelity warning, and sanitized sample.
  5. Type EXPORT REDACTED TRAJECTORIES exactly and select Export reviewed
    data locally
    .

Any change to the selected runs, content options, source journal, or privacy
review invalidates the preview. Holaryn asks for a new preview instead of
silently exporting different data.

Formats

Format Intended use
OpenAI chat JSONL One messages array per line, including standard function-call records when selected.
ShareGPT JSONL One conversations array per line using human, gpt, system, and tool roles.
Holaryn episode JSONL A versioned episode record with local provenance, integrity evidence, fidelity notes, and normalized messages.

Every export includes a JSON provenance sidecar. It records the Holaryn and
schema versions, selected source identifiers, options, source and preview
digests, the exact output digest bound during review, redaction counts, the
written dataset digest, consent time, and the fact that no network, training,
routing, or memory action occurred.

Hidden model chain-of-thought is never available to this exporter. Only
operator-visible transcript content and canonical tool records are eligible.
Historical runs reconstructed from events disclose that lower fidelity; a
compacted historical source is rejected rather than partially exported.

Use the CLI

List eligible runs:

holaryn trajectories candidates

Create a preview. Supply project-specific private values through environment
variables so their raw text does not appear in the command line:

holaryn trajectories preview run_0123456789abcdef --private-value-env CUSTOMER_CANARY

Copy the returned preview_id, then export with the same runs, options, and
private-value environment names:

holaryn trajectories export run_0123456789abcdef --private-value-env CUSTOMER_CANARY --preview-id 0123456789abcdef0123456789abcdef0123456789abcdef0123456789abcdef --confirm "EXPORT REDACTED TRAJECTORIES"

Use --include-system, --include-context, or --include-tool-results only
when the privacy preview shows the intended content. Choose another format
with --format sharegpt or --format holaryn-episode.

List managed exports:

holaryn trajectories list

Delete an unchanged export:

holaryn trajectories delete traj_0123456789abcdef --confirm "DELETE traj_0123456789abcdef"

Holaryn verifies both file digests before deletion. If either file changed, the
ordinary command stops. Inspect the files first; only then use
--force-changed with the separate phrase FORCE DELETE <export-id>.

Redaction boundary

The review detects registered broker secrets and common private patterns,
including authorization headers, provider tokens, JWTs, secret assignments,
credential-bearing URLs, email addresses, phone numbers, government ID
patterns, payment-card numbers with a valid checksum, IP addresses, and local
user paths. Custom exact private values cover domain-specific names or content.

Redaction is defense in depth, not proof that a dataset is anonymous. Names,
business facts, unusual identifiers, and sensitive prose may not match a
generic pattern. Read the sanitized samples and use custom values or omit
optional content when needed.

Exports remain under the Holaryn state directory in trajectory-exports.
Authenticated downloads recheck the recorded digest and use no-store.

Each export has Download JSONL, Download provenance, and Delete
buttons; screen readers hear which export each belongs to ("Download JSONL for
export traj_…"). A download link never contains your sign-in token: the page
first asks Holaryn for a ticket that works once, for that one file, within 60
seconds, and the browser downloads the file with it. Before it issues the
ticket, Holaryn checks that the file still exists and still matches its
recorded digest. The button keeps focus and shows a small spinner while the
download is prepared. The page says "Download started" with the file name,
exactly as it is saved, when it hands the download to the browser (and
"Preparing…" first if getting the ticket takes more than a second). If the
file was already removed or changed when you pressed the button, or Holaryn
does not answer, the reason appears next to the button and nothing says the
download started.

"Download started" means the page asked the browser to fetch the file; the page
cannot see whether the browser then receives it. A download can still fail
after that point, and then only the browser's own download list shows the
failure
:

  • the file is deleted or changed in the moment between Holaryn's check and the
    browser's request;
  • Holaryn's sign-in token changes (for example when the host restarts with a
    new token) before the browser uses the ticket;
  • the ticket expires, because the browser used it more than 60 seconds later;
  • the ticket was dropped to make room, because more than 256 tickets were
    issued while it was waiting;
  • the host restarts, stops, or is too busy to accept the request, or the
    network fails.

After an export, focus moves to the Local exports heading, where the new
export is listed first. After a delete, the export disappears from the list at
once and focus moves to the next export's heading (or the previous one, or
Local exports when none is left); if you moved focus elsewhere while the
request ran, it stays there. While a delete runs it cannot be recalled, so
Cancel and the other Delete buttons do nothing until it finishes;
otherwise Cancel returns focus to that export's Delete button. The page
then says what happened.

After an external training run

Ollama serves and packages models but does not turn this export into a
fine-tuned model by itself. Use a trainer you trust in a separate environment,
keep its data-handling boundary explicit, and convert the resulting weights to
a runtime format such as GGUF when that trainer requires it.

Afterward, use Local models to import or discover the model,
verify its files, assign a role, and run the relevant benchmark. If it passes,
the opt-in adaptive router can prefer that local model
for eligible low-complexity work while preserving capability, privacy, budget,
and fallback constraints. Dataset export never enables either step
automatically.