Lino is the ~1B distilled-from-Griffin inline model. It runs locally inside the IDE, CLI, and pre-commit hook with sub-100 ms latency and zero source-code egress — so a developer never has to choose between speed and a real second pair of eyes.
Three jobs in the editor. Sub-100 ms so the developer never disables it.
Catches obvious dangerous sinks — unsafe deserialization, SSRF-able URL builders, unsanitised SQL, command-exec, path traversal — before code ever reaches CI.
Flags weak or missing sanitiser usage in known dangerous flows. Knows the difference between a real allow-list and a check that looks like one.
Model weights ship with the IDE extension and CLI. No source code, prompts, or embeddings leave the developer machine. Zero network egress required.
Lino runs as the developer types and on every staged change.
Sub-80 ms sink + sanitiser check, fully on device, no network call.
Finding shows up inline with a one-line explanation and the offending span.
Issue is gone before CI ever sees it. No queue, no triage tax.
Catch it inline, fix it in the editor, never spend a triage hour on it.
Sub-80 ms on the developer machine, no egress, distilled from the same brain as the rest of the lineup.