Fairwind Program

Keeping defenders one step ahead

The Fairwind Program gives trusted partners a critical head start against AI-driven cyber threats, while making sure models are deployed safely and responsibly.

Putting defenders first

Using frontier AI capabilities can help people to rapidly discover – and fix – critical vulnerabilities. But in the wrong hands, the same capabilities can become an equally powerful threat.

The Fairwind Program gives high-priority defenders (like governments, healthcare providers, and telecommunications services) early access to advanced models that help them build better defenses, before new threats arrive. So defenders have an early advantage, to help them protect vital infrastructure – which in turn protects people who rely on those systems.

The technology behind the program

Fairwind Program partners get exclusive access to Gemini 3.8 Flash Cyber, and can use this model in CodeMender to further enhance its powerful vulnerability research and patching capabilities

Gemini 3.8 Flash Cyber

Gemini 3.8 Flash Cyber excels not only at finding vulnerabilities, but fixing them. Acts as an intelligent, cost-effective partner, dramatically accelerating practical vulnerability research, complex code synthesis, and real-time threat intelligence.

CodeMender

A specialized code security agent that provides a safe and effective way to help automate software fixes. Helps defenders focus on finding and fixing vulnerabilities, without the need to build and maintain their own harnesses.

Governance and trust

We’ve established robust governance standards and due diligence checks to make sure this program is only used for defensive and research purposes, and that customer data is protected.

Restricted dual-use tasks

Fairwind Program partners are only permitted to carry out dual-use tasks, including authorized threat simulation, reverse engineering, and malware analysis for defensive and academic research purposes.

Best-practice security

Participating organizations agree to specific terms, including user-level authentication, phishing-resistant MFA, and applicable access controls. Organizations may only grant Gemini 3.8 Flash Cyber access to internal cybersecurity, incident response, or penetration testing teams, and must track employee access and use.

Managed access

Access to the Fairwind Program is strictly controlled, and we do not allow partner organizations to share, redistribute, or sell access to our frontier models.

Due diligence

We conduct background checks on organizations that apply, to verify security history and analyze their record of ethical operations.

Apply for access

To request access to the Fairwind Program, fill in our form.
We will review and respond to eligible partners who meet our criteria as soon as we can.

Frequently asked questions

Who can get access?
We prioritize access for governments and partners most critical to societal resilience. We routinely review applications and add new partners over time.

These partners include:

  • Governments and national cyber authorities. To defend public-sector networks and citizen services against targeted intrusions.
  • Critical infrastructure operators. To protect essential services from operational disruption – including healthcare, telecommunications, energy, and financial networks.
  • Core technology platforms. To secure widespread software foundations to enhance digital security for millions of downstream users.

We vet all applicants to make sure they have a proven track record of ethical operations and research.

How long does it take to process applications?
We will review and respond to eligible partners who meet our criteria as soon as we can.

How does the Fairwind Program differ from standard Gemini access?

The Fairwind Program provides exclusive access to Gemini 3.8 Flash Cyber, which can be used as a standalone model or together with CodeMender.

What can I do if I’m not eligible for the Fairwind Program?

The Fairwind Program is exclusively available to approved trusted partners. It gives a head start against AI-driven cyber threats, by providing early access to frontier capabilities.

If your organization isn’t eligible for access, you can still protect your code using CodeMender with publicly available models, along with other Google AI Threat Defense products and solutions.

What are “permitted” dual-use tasks?

Permitted tasks include authorized threat simulation, reverse engineering, and malware analysis for defensive and academic research purposes. Malicious tasks such as creating malware are not permitted.

Can academic institutions apply?

We welcome applications from academic labs that focus on defensive benchmarking. For student use, we recommend accessing CodeMender on Google Cloud.

Can you support zero data retention for Fairwind Program partners?

Yes. When accessed directly as a managed model on Gemini Enterprise Agent Platform, Gemini 3.8 Flash Cyber supports zero data retention. Learn more here.